New issue
Advanced search Search tips

Issue 664732 link

Starred by 2 users

Issue metadata

Status: Duplicate
Merged: issue 325099
Owner: ----
Closed: Nov 2016
EstimatedDays: ----
NextAction: ----
OS: ----
Pri: ----
Type: Bug-Security



Sign in to add a comment

Security: Address bar spoof in Chrome for Android

Reported by struk...@gmail.com, Nov 12 2016

Issue description

VULNERABILITY DETAILS
The Chrome browser is vulnerable to a URL spoofing issue due to the fact that, if a URL with an unreachable port is directly loaded into the address bar, via a copy/paste or if it's typed, the URL remains there until a timeout occurs, while the document is still unchanged and is active and accessible.

VERSION
Chrome Version: 54.0.2840.85
Operating System: Android 4.4.2

REPRODUCTION CASE

1- Open http://strukt.tk/pocs/brave/chromes.html in Chrome browser on Android.
2- Follow the instructions explained in the above link.
3- Notice that the URL is changed to http://www.facebook.com:83, while the document body contains "Not Facebook".


Regards
 

Comment 1 by struk...@gmail.com, Nov 12 2016

The page remains active for sometime, enough for the spoof to mislead users, and sometimes even more than 30 seconds.

Comment 2 by rickyz@chromium.org, Nov 14 2016

Labels: -Restrict-View-SecurityTeam
Mergedinto: 325099
Status: Duplicate (was: Unconfirmed)
Hi, we don't consider it a security bug that the address bar shows what the user entered while it is loading - for more information, see the discussion in  issue 325099 .
Project Member

Comment 3 by sheriffbot@chromium.org, Feb 21 2017

Labels: allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Sign in to add a comment