CVE-2017-5015 PUBLISHED

Google Chrome prior to 56.0.2924.76 for Linux, Windows and Mac, and 56.0.2924.87 for Android, incorrectly handled Unicode glyphs, which allowed a remote attacker to perform domain spoofing via IDN homographs in a crafted domain name.

EPSS 0.56% · 68.0th percentile

Risk Scores

EPSS Score
0.56%
68.0th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSchromium-browser0, 45.0.2454.101-0ubuntu1.1201, 47.0.2526.73-0ubuntu1.1218
Ubuntu:14.04:LTSchromium-browser43.0.2357.81-0ubuntu0.14.04.1.1089, 43.0.2357.130-0ubuntu0.14.04.1.1092, 44.0.2403.89-0ubuntu0.14.04.1.1095

Timeline

References

Open in Interactive Console →