CVE-2022-3310

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-3310
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-3310.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-3310
Related
Published
2022-11-01T20:15:21Z
Modified
2024-09-18T03:20:47.326750Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

Insufficient policy enforcement in custom tabs in Google Chrome on Android prior to 106.0.5249.62 allowed an attacker who convinced the user to install an application to bypass same origin policy via a crafted application. (Chromium security severity: Medium)

References

Affected packages

Debian:11 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
106.0.5249.61-1~deb11u1

Affected versions

90.*

90.0.4430.212-1

93.*

93.0.4577.82-1

97.*

97.0.4692.71-0.1~deb11u1
97.0.4692.71-0.1
97.0.4692.99-1~deb11u1
97.0.4692.99-1~deb11u2
97.0.4692.99-1

98.*

98.0.4758.80-1~deb11u1
98.0.4758.80-1
98.0.4758.102-1~deb11u1
98.0.4758.102-1

99.*

99.0.4818.0-0.1
99.0.4844.51-1~deb11u1
99.0.4844.51-1
99.0.4844.51-2
99.0.4844.74-1~deb11u1
99.0.4844.74-1
99.0.4844.84-1~deb11u1
99.0.4844.84-1

100.*

100.0.4896.60-1~deb11u1
100.0.4896.60-1
100.0.4896.75-1~deb11u1
100.0.4896.75-1
100.0.4896.88-1~deb11u1
100.0.4896.88-1
100.0.4896.127-1~deb11u1
100.0.4896.127-1

101.*

101.0.4951.41-1~deb11u1
101.0.4951.41-1
101.0.4951.41-2
101.0.4951.54-1
101.0.4951.64-1~deb11u1
101.0.4951.64-1

102.*

102.0.5005.61-1~deb11u1
102.0.5005.61-1
102.0.5005.115-1~deb11u1
102.0.5005.115-1

103.*

103.0.5060.53-1~deb11u1
103.0.5060.53-1
103.0.5060.114-1~deb11u1
103.0.5060.114-1
103.0.5060.134-1~deb11u1
103.0.5060.134-1

104.*

104.0.5112.79-1~deb11u1
104.0.5112.79-1
104.0.5112.101-1~deb11u1
104.0.5112.101-1

105.*

105.0.5195.52-1~deb11u1
105.0.5195.52-1
105.0.5195.102-1~deb11u1
105.0.5195.102-1
105.0.5195.125-1~deb11u1
105.0.5195.125-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
106.0.5249.61-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
106.0.5249.61-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}