CVE-2017-15424 PUBLISHED

Insufficient policy enforcement in Omnibox in Google Chrome prior to 63.0.3239.84 allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

EPSS 0.66% · 70.9th percentile

Risk Scores

EPSS Score
0.66%
70.9th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSchromium-browser0, 62.0.3202.94-0ubuntu1.1388, 62.0.3202.89-0ubuntu1.1386
Ubuntu:14.04:LTSchromium-browser40.0.2214.94-0ubuntu0.14.04.1.1068, 40.0.2214.111-0ubuntu0.14.04.1.1069, 41.0.2272.76-0ubuntu0.14.04.1.1076
Ubuntu:16.04:LTSchromium-browser59.0.3071.109-0ubuntu0.16.04.1289, 0, 45.0.2454.101-0ubuntu1.1201
Ubuntu:16.04:LTSoxide-qt1.11.4-0ubuntu1, 1.11.5-0ubuntu1, 1.12.5-0ubuntu1

Timeline

References

Open in Interactive Console →