CVE-2011-0776Sensitive Information Exposure in Google Chrome

Severity
5.0MEDIUMNVD
EPSS
0.2%
top 54.71%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 4
Latest updateMay 13

Description

The sandbox implementation in Google Chrome before 9.0.597.84 on Mac OS X might allow remote attackers to obtain potentially sensitive information about local files via vectors related to the stat system call.

CVSS vector

AV:N/AC:L/C:P/I:N/A:NExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDgoogle/chrome< 9.0.597.84

Patches

🔴Vulnerability Details

1
GHSA
GHSA-gxr7-xgq6-2pjx: The sandbox implementation in Google Chrome before 92022-05-13
CVE-2011-0776 — Sensitive Information Exposure | cvebase