VYPR
High severity7.8NVD Advisory· Published Jan 9, 2019· Updated Jun 17, 2026

CVE-2017-15404

CVE-2017-15404

Description

An ability to process crash dumps under root privileges and inappropriate symlinks handling could lead to a local privilege escalation in Crash Reporting in Google Chrome on Chrome OS prior to 61.0.3163.113 allowed a local attacker to perform privilege escalation via a crafted HTML page.

Affected products

3
  • Google/Chrome2 versions
    cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*range: <61.0.3163.113
    • (no CPE)range: unspecified
  • Google/ChromeOSllm-fuzzy
    Range: <61.0.3163.113

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.