Yandex Browser installer for Desktop before 17.4.1 has a DLL Hijacking Vulnerability because an untrusted search path is used for dnsapi.dll, winmm.dll, ntmarta.dll, cryptbase.dll or profapi.dll.
References
Link | Resource |
---|---|
https://browser.yandex.com/security/changelogs/fixed-in-version-17-4 | Vendor Advisory |
https://browser.yandex.com/security/changelogs/fixed-in-version-17-4 | Vendor Advisory |
Configurations
History
21 Nov 2024, 03:31
Type | Values Removed | Values Added |
---|---|---|
References | () https://browser.yandex.com/security/changelogs/fixed-in-version-17-4 - Vendor Advisory |
Information
Published : 2018-01-19 17:29
Updated : 2024-11-21 03:31
NVD link : CVE-2017-7327
Mitre link : CVE-2017-7327
CVE.ORG link : CVE-2017-7327
JSON object : View
Products Affected
yandex
- yandex_browser
CWE
CWE-426
Untrusted Search Path