Learn about CVE-2017-5092, a vulnerability in Google Chrome prior to 60.0.3112.78 for Windows that allowed a remote attacker to escape the sandbox via specially crafted HTML pages. Find out how to mitigate and prevent this security risk.
Google Chrome prior to version 60.0.3112.78 for Windows had a vulnerability that allowed a remote attacker to escape the sandbox through specially crafted HTML pages.
Understanding CVE-2017-5092
Before version 60.0.3112.78 for Windows, there was a lack of proper validation for untrusted input in PPAPI Plugins in Google Chrome, potentially enabling a sandbox escape.
What is CVE-2017-5092?
The Impact of CVE-2017-5092
Technical Details of CVE-2017-5092
Google Chrome prior to version 60.0.3112.78 for Windows had the following technical details:
Vulnerability Description
Affected Systems and Versions
Exploitation Mechanism
Mitigation and Prevention
To address CVE-2017-5092, consider the following mitigation strategies:
Immediate Steps to Take
Long-Term Security Practices
Patching and Updates