Cross-application scripting vulnerability in the Browser URL loading functionality in...
Vulnerability Description
Cross-application scripting vulnerability in the Browser URL loading functionality in Android 2.3.4 and 3.1 allows local applications to bypass the sandbox and execute arbitrary Javascript in arbitrary domains by (1) causing the MAX_TAB number of tabs to be opened, then loading a URI to the targeted domain into the current tab, or (2) making two startActivity function calls beginning with the targeted domain's URI followed by the malicious Javascript while the UI focus is still associated with the targeted domain.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2011-2357
Credits & Attribution
No credits recorded in the NVD database.
References
- http://osvdb.org/74260
- http://android.git.kernel.org/?p=platform/packages/apps/Browser.git%3B%20a=commit%3Bh=096bae248453abe83cbb2e5a2c744bd62cdb620b
- http://android.git.kernel.org/?p=platform/cts.git%3Ba=commit%3Bh=7e48fb87d48d27e65942b53b7918288c8d740e17
- http://www.securityfocus.com/archive/1/519146/100/0/threaded
- http://secunia.com/advisories/45457
- https://exchange.xforce.ibmcloud.com/vulnerabilities/68937
- http://www.securityfocus.com/bid/48954
- http://android.git.kernel.org/?p=platform/packages/apps/Browser.git%3B%20a=commit%3Bh=afa4ab1e4c1d645e34bd408ce04cadfd2e5dae1e
- http://blog.watchfire.com/files/advisory-android-browser.pdf
- http://www.infsec.cs.uni-saarland.de/projects/android-vuln/android_xss.pdf
- http://www.infsec.cs.uni-saarland.de/projects/android-vuln/
- http://blog.watchfire.com/wfblog/2011/08/android-browser-cross-application-scripting-cve-2011-2357.html
- http://seclists.org/fulldisclosure/2011/Aug/9
- http://securitytracker.com/id?1025881
- http://securityreason.com/securityalert/8335
More from google
View All →Affected Vendor
Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.