2010-3115 | Google Chrome Address Bar authentication spoofing (USN-1006-1 / BID-44203)

CVSS Meta Temp Score Current Exploit Price (≈) CTI Interest Score
9.4 $0-$5k 0.11

A vulnerability, which was classified as very critical, was found in Google Chrome up to (Web Browser). This affects an unknown code of the component Address Bar. The manipulation with an unknown input leads to a weak authentication vulnerability. CWE is classifying the issue as CWE-290. This is going to have an impact on confidentiality, integrity, and availability. The summary by CVE is:

Google Chrome before 5.0.375.127, and webkitgtk before 1.2.6, does not properly implement the history feature, which might allow remote attackers to spoof the address bar via unspecified vectors.

The weakness was released 08/24/2010 as USN-1006-1 (Website). It is possible to read the advisory at vupen.com. This vulnerability is uniquely identified as CVE-2010-3115 since 08/24/2010. The exploitability is told to be easy. It is possible to initiate the attack remotely. No form of authentication is needed for exploitation. The technical details are unknown and an exploit is not publicly available. The pricing for an exploit might be around USD $0-$5k at the moment (estimation calculated on 09/23/2021). It is expected to see the exploit prices for this product increasing in the near future.

The vulnerability scanner Nessus provides a plugin with the ID 50030 (Fedora 13 : webkitgtk-1.2.5-1.fc13 (2010-15957)), which helps to determine the existence of the flaw in a target environment. It is assigned to the family Fedora Local Security Checks. The commercial vulnerability scanner Qualys is able to test this issue with plugin 155514 (Oracle Enterprise Linux Update for WebKitGTK(ELSA-2011-0177)).

Upgrading to version eliminates this vulnerability. The upgrade is hosted for download at chrome.google.com.

The vulnerability is also documented in the databases at Vulnerability Center (SBV-27235) and Tenable (50030). Entries connected to this vulnerability are available at 4317, 51558, 53012 and 52173.




VulDB Meta Base Score: 9.8
VulDB Meta Temp Score: 9.4

VulDB Base Score: 9.8
VulDB Temp Score: 9.4
VulDB Vector: 🔍
VulDB Reliability: 🔍

🔍 🔍 🔍 🔍 🔍 🔍
🔍 🔍 🔍 🔍 🔍 🔍
🔍 🔍 🔍 🔍 🔍 🔍
Vector Complexity Authentication Confidentiality Integrity Availability
unlock unlock unlock unlock unlock unlock
unlock unlock unlock unlock unlock unlock
unlock unlock unlock unlock unlock unlock

VulDB Base Score: 🔍
VulDB Temp Score: 🔍
VulDB Reliability: 🔍

NVD Base Score: 🔍

Class: Weak authentication
CWE: CWE-290
ATT&CK: Unknown

Local: No
Remote: Yes

Availability: 🔍
Status: Not defined
Price Prediction: 🔍
Current Price Estimation: 🔍

0-Day unlock unlock unlock unlock
Today unlock unlock unlock unlock

Nessus ID: 50030
Nessus Name: Fedora 13 : webkitgtk-1.2.5-1.fc13 (2010-15957)
Nessus File: 🔍
Nessus Risk: 🔍
Nessus Family: 🔍

OpenVAS ID: 68513
OpenVAS Name: FreeBSD Ports: webkit-gtk2
OpenVAS File: 🔍
OpenVAS Family: 🔍

Qualys ID: 🔍
Qualys Name: 🔍

Threat Intelligenceinfoedit

Interest: 🔍
Active Actors: 🔍
Active APT Groups: 🔍Recommended: Upgrade
Status: 🔍

0-Day Time: 🔍

Upgrade: Chrome

08/19/2010 🔍
08/24/2010 +4 days 🔍
08/24/2010 +0 days 🔍
08/24/2010 +0 days 🔍
08/24/2010 +0 days 🔍
09/21/2010 +28 days 🔍
03/19/2015 +1640 days 🔍
09/23/2021 +2380 days 🔍Vendor: https://www.google.com/
Product: https://www.google.com/chrome/

Advisory: USN-1006-1
Status: Not defined
Confirmation: 🔍

CVE: CVE-2010-3115 (🔍)

Vulnerability Center: 27235 – Google Chrome Before 5.0.375.127 Remote Spoofing Vulnerability via Unspecified Vectors, Critical
SecurityFocus: 44203 – Webkit History Feature Address Bar URI Spoofing Vulnerability
Secunia: 41856

See also: 🔍

Created: 03/19/2015 14:37
Updated: 09/23/2021 20:03
Changes: (1) source_nessus_risk
Complete: 🔍

Enable the mail alert feature now!

Source link