The browser native UI in Google Chrome before 17.0.963.83 does not require user confirmation before an unpacked extension installation, which allows user-assisted remote attackers to have an unspecified impact via a crafted extension.
References
Configurations
History
No history.
Information
Published : 2012-03-22 16:55
Updated : 2026-06-16 23:32
NVD link : CVE-2011-3055
Mitre link : CVE-2011-3055
CVE.ORG link : CVE-2011-3055
JSON object : View
Products Affected
- chrome
opensuse
- opensuse
CWE
CWE-306
Missing Authentication for Critical Function
