|
Google Chrome contains a flaw in the 'RenderViewHostImpl::DragTargetDragEnter' function in browser/renderer_host/render_view_host_impl.cc when handling drag and drop events. With a specially crafted web page, a context-dependent attacker may gain access to arbitrary files.
|