Improperly implemented security check for standard in Google Chromium - CVE-2024-0811
Published: January 23, 2024 / Updated: January 23, 2024
Google Chromium
Microsoft Edge
Google Chrome
Debian Linux
Gentoo Linux
Fedora
Chrome OS
dev-qt/qtwebengine
www-client/microsoft-edge
chromium
chromium (Debian package)
www-client/chromium
www-client/google-chrome
Detailed vulnerability description
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to incorrect implementation in Extensions API in Google Chrome. A remote attacker can create a specially crafted web page, trick the victim into visiting it and gain access to sensitive information.