cvelist/2020/15xxx/CVE-2020-15959.json

108 lines
3.9 KiB
JSON
Raw Normal View History

2020-07-27 21:01:21 +00:00
{
"data_type": "CVE",
"data_format": "MITRE",
"data_version": "4.0",
"CVE_data_meta": {
"ID": "CVE-2020-15959",
2020-09-21 20:01:47 +00:00
"ASSIGNER": "chrome-cve-admin@google.com",
"STATE": "PUBLIC"
2020-09-21 11:59:18 -07:00
},
"affects": {
"vendor": {
"vendor_data": [
{
"vendor_name": "Google",
"product": {
"product_data": [
{
"product_name": "Chrome",
"version": {
"version_data": [
{
"version_value": "85.0.4183.102",
"version_affected": "<"
}
]
}
}
]
}
}
]
}
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "Insufficient policy enforcement"
}
]
}
]
},
"references": {
"reference_data": [
{
2020-09-21 20:01:47 +00:00
"url": "https://crbug.com/1122684",
"refsource": "MISC",
"name": "https://crbug.com/1122684"
2020-09-21 11:59:18 -07:00
},
{
2020-09-21 20:01:47 +00:00
"url": "https://chromereleases.googleblog.com/2020/09/stable-channel-update-for-desktop.html",
"refsource": "MISC",
"name": "https://chromereleases.googleblog.com/2020/09/stable-channel-update-for-desktop.html"
2020-09-22 15:01:34 +00:00
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2020:1499",
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00072.html"
2020-09-23 18:01:33 +00:00
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2020:1510",
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00078.html"
2020-09-24 15:01:57 +00:00
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2020:1514",
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-09/msg00081.html"
2020-10-02 03:01:36 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2020-2d994b986d",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/GNIYFJST4TFJYFZ27VODBOINCLBGULTD/"
2020-10-03 04:01:42 +00:00
},
{
"refsource": "FEDORA",
"name": "FEDORA-2020-aea86f913e",
"url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FN7HZIGAOCZKBT4LV363BCPRA5FLY25I/"
2020-10-23 18:01:49 +00:00
},
{
"refsource": "SUSE",
"name": "openSUSE-SU-2020:1713",
"url": "http://lists.opensuse.org/opensuse-security-announce/2020-10/msg00049.html"
2021-01-02 16:02:17 +00:00
},
{
"refsource": "DEBIAN",
"name": "DSA-4824",
"url": "https://www.debian.org/security/2021/dsa-4824"
2021-01-26 18:06:43 +00:00
},
{
"refsource": "GENTOO",
"name": "GLSA-202101-30",
"url": "https://security.gentoo.org/glsa/202101-30"
2020-09-21 11:59:18 -07:00
}
]
2020-07-27 21:01:21 +00:00
},
"description": {
"description_data": [
{
"lang": "eng",
2020-09-21 11:59:18 -07:00
"value": "Insufficient policy enforcement in networking in Google Chrome prior to 85.0.4183.102 allowed an attacker who convinced the user to enable logging to obtain potentially sensitive information from process memory via social engineering."
2020-07-27 21:01:21 +00:00
}
]
}
}