Inappropriate implementation in Skia in Google Chrome prior to 115.0.5790.98 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
The requirements for the product dictate the use of an established authentication algorithm, but the implementation of the algorithm is incorrect.
Link | Tags |
---|---|
https://chromereleases.googleblog.com/2023/07/stable-channel-update-for-desktop.html | release notes |
https://issues.chromium.org/issues/40064341 | permissions required |