Information disclosure in Google Chrome - CVE-2011-1810
Published: June 9, 2011 / Updated: August 11, 2020
Google Chrome
Detailed vulnerability description
The vulnerability allows a remote non-authenticated attacker to gain access to sensitive information.
The Cascading Style Sheets (CSS) implementation in Google Chrome before 12.0.742.91 does not properly restrict access to the visit history, which allows remote attackers to obtain sensitive information via unspecified vectors.
How to mitigate CVE-2011-1810
Sources
- http://code.google.com/p/chromium/issues/detail?id=75643
- http://googlechromereleases.blogspot.com/2011/06/chrome-stable-release.html
- http://osvdb.org/72780
- http://secunia.com/advisories/44829
- http://www.securityfocus.com/bid/48129
- https://exchange.xforce.ibmcloud.com/vulnerabilities/67893
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14433