Critical Chrome Vulnerabilities Let Malicious Apps Run Shell Command on Your PC

Researchers discovered vulnerabilities in the Chromium web browser that allowed malicious extensions to escape the sandbox and execute arbitrary code on the user’s system.  These vulnerabilities exploited the privileged nature of WebUI pages, which provide the user interface for Chromium’s features and have access to private APIs that can bypass the sandbox.  It has been found that malicious scripts could trigger certain actions on WebUI pages to circumvent security checks and execute arbitrary code, potentially leading to serious security consequences. Settings The Chromium enterprise policy system allows administrators to control Chrome settings remotely.

Source: GBHackers

 


Date:

Categorie(s):