CVE-2018-6075 PUBLISHED

Incorrect handling of specified filenames in file downloads in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to leak cross-origin data via a crafted HTML page and user interaction.

EPSS 0.73% · 72.5th percentile

Risk Scores

EPSS Score
0.73%
72.5th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSchromium-browser0, 45.0.2454.101-0ubuntu1.1201, 47.0.2526.73-0ubuntu1.1218
Ubuntu:14.04:LTSchromium-browser62.0.3202.89-0ubuntu0.14.04.1213, 50.0.2661.102-0ubuntu0.14.04.1.1117, 63.0.3239.84-0ubuntu0.14.04.1
Ubuntu:16.04:LTSoxide-qt0, 1.9.5-0ubuntu1, 1.10.3-0ubuntu0.15.10.2

Timeline

References

Open in Interactive Console →