Cross-Origin Data Leakage in WebGL Texture Sharing

Cross-Origin Data Leakage in WebGL Texture Sharing

CVE-2018-6079 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:N/A:N

Inappropriate sharing of TEXTURE_2D_ARRAY/TEXTURE_3D data between tabs in WebGL in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to leak cross-origin data via a crafted HTML page.

Learn more about our Cis Benchmark Audit For Google Chrome.