Release date:
Updated on:
Affected Systems:
Google Chrome 15
Google Chrome 14
Unaffected system:
Google Chrome 16
Description:
--------------------------------------------------------------------------------
Google Chrome is an open-source web browser developed by Google.
Google Chrome 14 and 15 have a spoofing vulnerability in the HTTPS address bar. Attackers can exploit this vulnerability to trick users into accessing malicious websites and leak their certificates and personal data.
<* Source: Luka Treiber
Link: http://blog.acrossecurity.com/2012/01/google-chrome-https-address-bar.html
Http://blog.acrossecurity.com/2012/01/google-chrome-https-address-bar.html
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Google
------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.google.com