QID 630828
Date Published: 2022-09-29
QID 630828: Google Chrome For Android Exposure of Resource Vulnerability
Insufficient validation of untrusted input in File in Google Chrome on Android prior to 103.0.5060.134 allowed an attacker who convinced a user to install a malicious app to obtain potentially sensitive information from internal file directories via a crafted HTML page.
On successful exploitation, it could allow an attacker to execute code.
Solution
Upgrade to the latest packages which contain a patch. Refer to CVE-2022-2479 to address this issue and obtain more information.
Vendor References
- CVE-2022-2479 -
nvd.nist.gov/vuln/detail/CVE-2022-2479
CVEs related to QID 630828
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| CVE-2022-2479 | Android |
|