page/EventHandler.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 does not properly handle a change of the focused frame during the dispatching of keydown, which allows user-assisted remote attackers to redirect keystrokes via a crafted HTML document, aka rdar problem 7018610. NOTE: this might overlap CVE-2010-1422.
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Link | Tags |
---|---|
https://bugs.webkit.org/show_bug.cgi?id=26824 | permissions required |
http://secunia.com/advisories/43068 | third party advisory |
http://www.vupen.com/english/advisories/2011/0212 | vdb entry permissions required |
http://secunia.com/advisories/40072 | third party advisory |
https://bugzilla.mozilla.org/show_bug.cgi?id=552255 | issue tracking third party advisory |
http://lists.opensuse.org/opensuse-security-announce/2011-01/msg00006.html | third party advisory vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12003 | vdb entry third party advisory signature |
http://code.google.com/p/chromium/issues/detail?id=15766 | vendor advisory |
http://src.chromium.org/viewvc/chrome/branches/WebKit/375/WebCore/page/EventHandler.cpp?r1=48067&r2=48066 | permissions required vendor advisory |
http://googlechromereleases.blogspot.com/2010/06/stable-channel-update.html | vendor advisory |