Endpoint Vulnerability

Security Vulnerability CVE-2018-6176 for Google Chrome

Description

Insufficient file type enforcement in Extensions API in Google Chrome prior to 68.0.3440.75 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted Chrome Extension.

Affected Products

Google Chrome

References

CVE-2018-6176,