The PointerCompare function in codegen.cc in Seccomp-BPF, as used in Google Chrome prior to 34.0.1847.131 on Windows and OS X and prior to 34.0.1847.132 on Linux, does not properly merge blocks, which might allow remote malicious users to bypass intended sandbox restrictions by leveraging renderer access.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google chrome |