The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.
References
Configurations
History
No history.
Information
Published : 2012-03-22 16:55
Updated : 2025-04-11 00:51
NVD link : CVE-2011-3055
Mitre link : CVE-2011-3055
CVE.ORG link : CVE-2011-3055
JSON object : View
Products Affected
opensuse
- opensuse
- chrome
CWE
CWE-306
Missing Authentication for Critical Function