Inappropriate implementation in permissions in Google Chrome prior to 85.0.4183.83 allowed a remote attacker to spoof the contents of a permission dialog via a crafted HTML page.
The product does not preserve permissions or incorrectly preserves permissions when copying, restoring, or sharing objects, which can cause them to have less restrictive permissions than intended.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Chrome | * | 85.0.4183.83 (excluding) | |
| Backports_sle | Opensuse | 15.0-sp1 (including) | 15.0-sp1 (including) |
| Backports_sle | Opensuse | 15.0-sp2 (including) | 15.0-sp2 (including) |
| Debian_linux | Debian | 10.0 (including) | 10.0 (including) |
| Fedora | Fedoraproject | 33 (including) | 33 (including) |
| Red Hat Enterprise Linux 6 Supplementary | RedHat | chromium-browser-0:85.0.4183.83-1.el6_10 | * |
| Chromium-browser | Ubuntu | bionic | * |
| Chromium-browser | Ubuntu | trusty | * |
| Chromium-browser | Ubuntu | upstream | * |
| Chromium-browser | Ubuntu | xenial | * |