HTTP: Google Chrome iframe Information Disclosure

This signature detects attempts to exploit a known vulnerability against Google Chrome iframe. A successful attack can lead to unauthorized information disclosure.

Extended Description

Google Chrome is prone to multiple vulnerabilities: - multiple remote code-execution issues - multiple information-disclosure issues - a code-execution issue - a cross-origin information-disclosure issue Attackers can exploit these issues to obtain sensitive information, execute arbitrary code in the context of the browser, and carry out other attacks. Versions prior to Chrome 4.0.249.89 are vulnerable.

Affected Products

Google chrome

References

BugTraq: 38177

CVE: CVE-2010-0315

Short Name
HTTP:STC:CHROME:IFRAME-INFO-DIS
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2010-0315 CVE-2010-0556 Chrome Disclosure Google Information bid:38177 iframe
Release Date
12/19/2012
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Google

Webkit_open_source_project

Ubuntu

CVSS Score

4.3

5.0

Found a potential security threat?