The WebMediaPlayerAndroid::load function in content/renderer/media/android/webmediaplayer_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly interact with redirects, which allows remote attackers to bypass the Same Origin Policy via a crafted web site that hosts a video stream.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Chrome | * | 36.0.1985.106 (including) | |
Chrome | 36.0.1985.1 (including) | 36.0.1985.1 (including) | |
Chrome | 36.0.1985.2 (including) | 36.0.1985.2 (including) | |
Chrome | 36.0.1985.3 (including) | 36.0.1985.3 (including) | |
Chrome | 36.0.1985.4 (including) | 36.0.1985.4 (including) | |
Chrome | 36.0.1985.5 (including) | 36.0.1985.5 (including) | |
Chrome | 36.0.1985.6 (including) | 36.0.1985.6 (including) | |
Chrome | 36.0.1985.8 (including) | 36.0.1985.8 (including) | |
Chrome | 36.0.1985.12 (including) | 36.0.1985.12 (including) | |
Chrome | 36.0.1985.13 (including) | 36.0.1985.13 (including) | |
Chrome | 36.0.1985.14 (including) | 36.0.1985.14 (including) | |
Chrome | 36.0.1985.15 (including) | 36.0.1985.15 (including) | |
Chrome | 36.0.1985.16 (including) | 36.0.1985.16 (including) | |
Chrome | 36.0.1985.17 (including) | 36.0.1985.17 (including) | |
Chrome | 36.0.1985.18 (including) | 36.0.1985.18 (including) | |
Chrome | 36.0.1985.19 (including) | 36.0.1985.19 (including) | |
Chrome | 36.0.1985.20 (including) | 36.0.1985.20 (including) | |
Chrome | 36.0.1985.21 (including) | 36.0.1985.21 (including) | |
Chrome | 36.0.1985.22 (including) | 36.0.1985.22 (including) | |
Chrome | 36.0.1985.23 (including) | 36.0.1985.23 (including) | |
Chrome | 36.0.1985.24 (including) | 36.0.1985.24 (including) | |
Chrome | 36.0.1985.25 (including) | 36.0.1985.25 (including) | |
Chrome | 36.0.1985.26 (including) | 36.0.1985.26 (including) | |
Chrome | 36.0.1985.27 (including) | 36.0.1985.27 (including) | |
Chrome | 36.0.1985.28 (including) | 36.0.1985.28 (including) | |
Chrome | 36.0.1985.29 (including) | 36.0.1985.29 (including) | |
Chrome | 36.0.1985.30 (including) | 36.0.1985.30 (including) | |
Chrome | 36.0.1985.31 (including) | 36.0.1985.31 (including) | |
Chrome | 36.0.1985.32 (including) | 36.0.1985.32 (including) | |
Chrome | 36.0.1985.33 (including) | 36.0.1985.33 (including) | |
Chrome | 36.0.1985.34 (including) | 36.0.1985.34 (including) | |
Chrome | 36.0.1985.35 (including) | 36.0.1985.35 (including) | |
Chrome | 36.0.1985.36 (including) | 36.0.1985.36 (including) | |
Chrome | 36.0.1985.37 (including) | 36.0.1985.37 (including) | |
Chrome | 36.0.1985.38 (including) | 36.0.1985.38 (including) | |
Chrome | 36.0.1985.39 (including) | 36.0.1985.39 (including) | |
Chrome | 36.0.1985.40 (including) | 36.0.1985.40 (including) | |
Chrome | 36.0.1985.41 (including) | 36.0.1985.41 (including) | |
Chrome | 36.0.1985.42 (including) | 36.0.1985.42 (including) | |
Chrome | 36.0.1985.43 (including) | 36.0.1985.43 (including) | |
Chrome | 36.0.1985.44 (including) | 36.0.1985.44 (including) | |
Chrome | 36.0.1985.45 (including) | 36.0.1985.45 (including) | |
Chrome | 36.0.1985.46 (including) | 36.0.1985.46 (including) | |
Chrome | 36.0.1985.47 (including) | 36.0.1985.47 (including) | |
Chrome | 36.0.1985.48 (including) | 36.0.1985.48 (including) | |
Chrome | 36.0.1985.49 (including) | 36.0.1985.49 (including) | |
Chrome | 36.0.1985.50 (including) | 36.0.1985.50 (including) | |
Chrome | 36.0.1985.51 (including) | 36.0.1985.51 (including) | |
Chrome | 36.0.1985.52 (including) | 36.0.1985.52 (including) | |
Chrome | 36.0.1985.53 (including) | 36.0.1985.53 (including) | |
Chrome | 36.0.1985.54 (including) | 36.0.1985.54 (including) | |
Chrome | 36.0.1985.55 (including) | 36.0.1985.55 (including) | |
Chrome | 36.0.1985.56 (including) | 36.0.1985.56 (including) | |
Chrome | 36.0.1985.57 (including) | 36.0.1985.57 (including) | |
Chrome | 36.0.1985.58 (including) | 36.0.1985.58 (including) | |
Chrome | 36.0.1985.59 (including) | 36.0.1985.59 (including) | |
Chrome | 36.0.1985.60 (including) | 36.0.1985.60 (including) | |
Chrome | 36.0.1985.61 (including) | 36.0.1985.61 (including) | |
Chrome | 36.0.1985.62 (including) | 36.0.1985.62 (including) | |
Chrome | 36.0.1985.63 (including) | 36.0.1985.63 (including) | |
Chrome | 36.0.1985.64 (including) | 36.0.1985.64 (including) | |
Chrome | 36.0.1985.65 (including) | 36.0.1985.65 (including) | |
Chrome | 36.0.1985.66 (including) | 36.0.1985.66 (including) | |
Chrome | 36.0.1985.67 (including) | 36.0.1985.67 (including) | |
Chrome | 36.0.1985.68 (including) | 36.0.1985.68 (including) | |
Chrome | 36.0.1985.69 (including) | 36.0.1985.69 (including) | |
Chrome | 36.0.1985.70 (including) | 36.0.1985.70 (including) | |
Chrome | 36.0.1985.72 (including) | 36.0.1985.72 (including) | |
Chrome | 36.0.1985.73 (including) | 36.0.1985.73 (including) | |
Chrome | 36.0.1985.74 (including) | 36.0.1985.74 (including) | |
Chrome | 36.0.1985.75 (including) | 36.0.1985.75 (including) | |
Chrome | 36.0.1985.76 (including) | 36.0.1985.76 (including) | |
Chrome | 36.0.1985.77 (including) | 36.0.1985.77 (including) | |
Chrome | 36.0.1985.78 (including) | 36.0.1985.78 (including) | |
Chrome | 36.0.1985.79 (including) | 36.0.1985.79 (including) | |
Chrome | 36.0.1985.81 (including) | 36.0.1985.81 (including) | |
Chrome | 36.0.1985.82 (including) | 36.0.1985.82 (including) | |
Chrome | 36.0.1985.83 (including) | 36.0.1985.83 (including) | |
Chrome | 36.0.1985.84 (including) | 36.0.1985.84 (including) | |
Chrome | 36.0.1985.85 (including) | 36.0.1985.85 (including) | |
Chrome | 36.0.1985.86 (including) | 36.0.1985.86 (including) | |
Chrome | 36.0.1985.87 (including) | 36.0.1985.87 (including) | |
Chrome | 36.0.1985.88 (including) | 36.0.1985.88 (including) | |
Chrome | 36.0.1985.89 (including) | 36.0.1985.89 (including) | |
Chrome | 36.0.1985.90 (including) | 36.0.1985.90 (including) | |
Chrome | 36.0.1985.91 (including) | 36.0.1985.91 (including) | |
Chrome | 36.0.1985.92 (including) | 36.0.1985.92 (including) | |
Chrome | 36.0.1985.93 (including) | 36.0.1985.93 (including) | |
Chrome | 36.0.1985.94 (including) | 36.0.1985.94 (including) | |
Chrome | 36.0.1985.95 (including) | 36.0.1985.95 (including) | |
Chrome | 36.0.1985.96 (including) | 36.0.1985.96 (including) | |
Chrome | 36.0.1985.97 (including) | 36.0.1985.97 (including) | |
Chrome | 36.0.1985.98 (including) | 36.0.1985.98 (including) | |
Chrome | 36.0.1985.99 (including) | 36.0.1985.99 (including) | |
Chrome | 36.0.1985.100 (including) | 36.0.1985.100 (including) | |
Chrome | 36.0.1985.101 (including) | 36.0.1985.101 (including) | |
Chrome | 36.0.1985.102 (including) | 36.0.1985.102 (including) | |
Chrome | 36.0.1985.103 (including) | 36.0.1985.103 (including) | |
Chrome | 36.0.1985.104 (including) | 36.0.1985.104 (including) | |
Chrome | 36.0.1985.105 (including) | 36.0.1985.105 (including) |