CVE-2015-1303
published 2015-10-12CVE-2015-1303: bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a…
PriorityP433high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.73%
75.3th percentile
bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a cross-context exception, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document containing an IFRAME element.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 45.0.2454.93 | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat10.0CRITICAL
vendor_ubuntu7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Oxide vulnerabilities
vendor_ubuntu·2015-10-05·CVSS 7.5
CVE-2015-1303 [HIGH] Oxide vulnerabilities
Title: Oxide vulnerabilities
Summary: Several security issues were fixed in Oxide.
Two security issues were discovered in Blink and V8. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to bypass same-origin restrictions.
(CVE-2015-1303, CVE-2015-1304)
Instructions: In general, a standard system update will make all the necessary changes.
Red Hat
chromium-browser: Cross-origin bypass in DOM
vendor_redhat·2015-09-24·CVSS 7.5
CVE-2015-1303 [HIGH] CWE-284 chromium-browser: Cross-origin bypass in DOM
chromium-browser: Cross-origin bypass in DOM
bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a cross-context exception, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document containing an IFRAME element.
Red Hat
webkitgtk: heap-based buffer overflow (WSA-2015-0001)
vendor_redhat·2015-01-26·CVSS 10.0
CVE-2014-1303 [CRITICAL] CWE-122 webkitgtk: heap-based buffer overflow (WSA-2015-0001)
webkitgtk: heap-based buffer overflow (WSA-2015-0001)
Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.
Statement: Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: webkitgtk (Red Hat Enterprise Linux 6) - Will not fix
Package: webkitgtk3 (Red Hat Enterprise Linux 7) - Will not fix
GHSA
GHSA-67j3-3gmx-23jq: bindings/core/v8/V8DOMWrapper
ghsa_unreviewed·2022-05-17
CVE-2015-1303 [HIGH] CWE-20 GHSA-67j3-3gmx-23jq: bindings/core/v8/V8DOMWrapper
bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a cross-context exception, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document containing an IFRAME element.
OSV
oxide-qt vulnerabilities
osv·2015-10-05·CVSS 7.5
CVE-2015-1303 [HIGH] oxide-qt vulnerabilities
oxide-qt vulnerabilities
Two security issues were discovered in Blink and V8. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to bypass same-origin restrictions.
(CVE-2015-1303, CVE-2015-1304)
OSV
CVE-2015-1303: bindings/core/v8/V8DOMWrapper
osv·2015-09-29·CVSS 7.5
CVE-2015-1303 [HIGH] CVE-2015-1303: bindings/core/v8/V8DOMWrapper
bindings/core/v8/V8DOMWrapper.h in Blink, as used in Google Chrome before 45.0.2454.101, does not perform a rethrow action to propagate information about a cross-context exception, which allows remote attackers to bypass the Same Origin Policy via a crafted HTML document containing an IFRAME element.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-1303 chromium-browser: Cross-origin bypass in DOM
bugzilla·2015-09-25·CVSS 7.5
CVE-2015-1303 [HIGH] CVE-2015-1303 chromium-browser: Cross-origin bypass in DOM
CVE-2015-1303 chromium-browser: Cross-origin bypass in DOM
An unspecified cross-origin bypass flaw was found in the DOM component of the Chrome / Chromium browser.
Upstream bug:
https://code.google.com/p/chromium/issues/detail?id=530301
External References:
http://googlechromereleases.blogspot.com/2015/09/stable-channel-update_24.html
Discussion:
This issue has been addressed in the following products:
Supplementary for Red Hat Enterprise Linux 6
Via RHSA-2015:1841 https://rhn.redhat.com/errata/RHSA-2015-1841.html
Bugzilla
CVE-2014-1303 webkitgtk: heap-based buffer overflow (WSA-2015-0001)
bugzilla·2015-01-27·CVSS 10.0
CVE-2014-1303 [CRITICAL] CVE-2014-1303 webkitgtk: heap-based buffer overflow (WSA-2015-0001)
CVE-2014-1303 webkitgtk: heap-based buffer overflow (WSA-2015-0001)
Following vulnerability was discovered on the 2.4 stable series of WebKitGTK+:
CVE-2014-1303
Heap-based buffer overflow in Apple Safari 7.0.2 allows remote attackers to execute arbitrary code and bypass a sandbox protection mechanism via unspecified vectors, as demonstrated by Liang Chen during a Pwn2Own competition at CanSecWest 2014.
External References:
http://webkitgtk.org/security/WSA-2015-0001.html
Discussion:
Statement:
Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
http://googlechromereleases.blogspot.com/2015/09/stable-channel-update_24.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1841.htmlhttp://www.debian.org/security/2015/dsa-3376http://www.securityfocus.com/bid/76844http://www.securitytracker.com/id/1033683http://www.ubuntu.com/usn/USN-2757-1https://code.google.com/p/chromium/issues/detail?id=530301https://codereview.chromium.org/1339023002https://security.gentoo.org/glsa/201603-09http://googlechromereleases.blogspot.com/2015/09/stable-channel-update_24.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00008.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00002.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1841.htmlhttp://www.debian.org/security/2015/dsa-3376http://www.securityfocus.com/bid/76844http://www.securitytracker.com/id/1033683http://www.ubuntu.com/usn/USN-2757-1https://code.google.com/p/chromium/issues/detail?id=530301https://codereview.chromium.org/1339023002https://security.gentoo.org/glsa/201603-09
2015-10-12
Published