CVE-2017-5084
published 2017-10-27CVE-2017-5084: Inappropriate implementation in image-burner in Google Chrome OS prior to 59.0.3071.92 allowed a local attacker to read local files via dbus-send commands to a…
PriorityP410low3.3CVSS 3.0
AVLACLPRLUINSUCLINAN
EPSS
0.15%
4.7th percentile
Inappropriate implementation in image-burner in Google Chrome OS prior to 59.0.3071.92 allowed a local attacker to read local files via dbus-send commands to a BurnImage D-Bus endpoint.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome_os | < 59.0.3071.92 | 59.0.3071.92 |
CVSS provenance
nvdv3.03.3LOWCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
nvdv2.02.1LOWAV:L/AC:L/Au:N/C:P/I:N/A:N
osv3.3LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h662-qc36-6h52: Inappropriate implementation in image-burner in Google Chrome OS prior to 59
ghsa_unreviewed·2022-05-13
CVE-2017-5084 [LOW] CWE-269 GHSA-h662-qc36-6h52: Inappropriate implementation in image-burner in Google Chrome OS prior to 59
Inappropriate implementation in image-burner in Google Chrome OS prior to 59.0.3071.92 allowed a local attacker to read local files via dbus-send commands to a BurnImage D-Bus endpoint.
OSV
CVE-2017-5084: Inappropriate implementation in image-burner in Google Chrome OS prior to 59
osv·2017-10-27·CVSS 3.3
CVE-2017-5084 [LOW] CVE-2017-5084: Inappropriate implementation in image-burner in Google Chrome OS prior to 59
Inappropriate implementation in image-burner in Google Chrome OS prior to 59.0.3071.92 allowed a local attacker to read local files via dbus-send commands to a BurnImage D-Bus endpoint.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.securityfocus.com/bid/98986https://chromereleases.googleblog.com/2017/06/stable-channel-update-for-chrome-os.htmlhttps://crbug.com/702030https://security.gentoo.org/glsa/201706-20http://www.securityfocus.com/bid/98986https://chromereleases.googleblog.com/2017/06/stable-channel-update-for-chrome-os.htmlhttps://crbug.com/702030https://security.gentoo.org/glsa/201706-20
2017-10-27
Published