Chrome security researchers to disclose vulnerability of Magellan 2.0

  Tencent security researcher <a href=" https://blade.tencent.com/magellan2/index.html"> disclosed </a> the new Magellan Google Chrome 2.0 vulnerabilities. The researchers found a total of five holes, located in SQLite, collectively known as Magellan 2.0, this group could allow *** to remotely run malicious code within the Google Chrome. Google and SQLite official identified and fixed the flaw.
  If you use an older version December 13, 2019 of href=" https://www.sqlite.org/src/timeline"> <a SQLite </a> or run lower than Chrome 79.0.3945.79 and enabled the WebSQL device, may be affected. And Magellan 1.0 is similar to the new set of vulnerabilities because SQL command SQLite database to accept from a third party resulting from improper input validation. *** can make SQL operations command contains malicious code, when the SQLite database engine reads the instruction to execute malicious code.

Guess you like

Origin blog.51cto.com/13354255/2462201