|
Google Chrome for Android contains a flaw that may allow a malicious app to bypass the same origin policy on the system. The issue is due to the program creating temporary files insecurely. It is possible for a malicious app to use a symlink attack against 'file: web pages' to cause the program to unexpectedly write to an attacker specified destination and disclose sensitive information like the contents of the Cookies file.
|