Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-6046-1 | chromium security update |
Thu, 13 Nov 2025 15:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-326 | |
| CPEs | cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* |
Wed, 12 Nov 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google chrome Microsoft Microsoft windows |
|
| Vendors & Products |
Google
Google chrome Microsoft Microsoft windows |
Wed, 12 Nov 2025 00:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | chromium-browser: Inappropriate implementation in App-Bound Encryption | |
| Weaknesses | CWE-524 | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Mon, 10 Nov 2025 21:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 10 Nov 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Inappropriate implementation in App-Bound Encryption in Google Chrome on Windows prior to 142.0.7444.59 allowed a local attacker to obtain potentially sensitive information from process memory via a malicious file. (Chromium security severity: Medium) | |
| References |
|
Status: PUBLISHED
Assigner: Chrome
Published:
Updated: 2025-11-10T21:02:26.622Z
Reserved: 2025-10-28T20:16:49.451Z
Link: CVE-2025-12439
Updated: 2025-11-10T21:01:19.019Z
Status : Analyzed
Published: 2025-11-10T20:15:38.647
Modified: 2025-11-13T15:24:28.413
Link: CVE-2025-12439
OpenCVE Enrichment
Updated: 2025-11-12T12:49:42Z
Debian DSA