CVE-2010-3115: Medium severity Google Chrome vulnerability
Published Aug 24, 2010
·Updated
Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, does not properly implement the history feature, which might allow remote attackers to spoof the address bar via unspecified vectors.
Affected Software
5 affected components
Google Chrome<5.0.375.127
WebKitGTK WebKitGTK<1.2.6
Canonical Ubuntu Linux=10.10
Canonical Ubuntu Linux=9.10
Canonical Ubuntu Linux=10.04
Remediation
Patch Available
Event History
Aug 24, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3115?
CVE-2010-3115 has a medium severity rating due to its potential to allow remote attackers to spoof the address bar.
2
How do I fix CVE-2010-3115?
To fix CVE-2010-3115, update Google Chrome to version 5.0.375.127 or later.
3
Which versions of Google Chrome are affected by CVE-2010-3115?
CVE-2010-3115 affects Google Chrome versions prior to 5.0.375.127.
4
Which versions of WebKitGTK+ are affected by CVE-2010-3115?
WebKitGTK+ versions earlier than 1.2.6 are vulnerable to CVE-2010-3115.
5
Is Ubuntu affected by CVE-2010-3115?
Yes, Ubuntu 10.10, 10.04, and 9.10 are affected by CVE-2010-3115, depending on the installed version of Chrome or WebKitGTK+.