CVE-2022-1495

Incorrect security UI in Downloads in Google Chrome on Android prior to 101.0.4951.41 allowed a remote attacker to spoof the APK downloads dialog via a crafted HTML page.
References
Link Resource
https://chromereleases.googleblog.com/2022/04/stable-channel-update-for-desktop_26.html Release Notes Vendor Advisory
https://crbug.com/1301180 Exploit Issue Tracking Patch Vendor Advisory
https://security.gentoo.org/glsa/202208-25 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

Information

Published : 2022-07-26 15:15

Updated : 2022-10-26 12:06


NVD link : CVE-2022-1495

Mitre link : CVE-2022-1495


JSON object : View

CWE
CWE-290

Authentication Bypass by Spoofing

Advertisement

dedicated server usa

Products Affected

google

  • android
  • chrome