CVE-2017-15404: High severity Google Chrome vulnerability
An ability to process crash dumps under root privileges and inappropriate symlinks handling could lead to a local privilege escalation in Crash Reporting in Google Chrome on Chrome OS prior to 61.0.3163.113 allowed a local attacker to perform privilege escalation via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-15404?
CVE-2017-15404 has a medium severity rating due to its potential for local privilege escalation on affected systems.
How do I fix CVE-2017-15404?
To mitigate CVE-2017-15404, update Google Chrome to version 61.0.3163.113 or later.
What are the potential impacts of exploiting CVE-2017-15404?
Exploiting CVE-2017-15404 could allow a local attacker to gain elevated privileges on the affected system.
Which versions of Google Chrome are affected by CVE-2017-15404?
CVE-2017-15404 affects Google Chrome versions prior to 61.0.3163.113.
Who is affected by CVE-2017-15404?
Users of Google Chrome on Chrome OS versions before 61.0.3163.113 are affected by CVE-2017-15404.