CVE-2018-12716
 
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
The API service on Google Home and Chromecast devices before mid-July 2018 does not prevent DNS rebinding attacks from reading the scan_results JSON data, which allows remote attackers to determine the physical location of most web browsers by leveraging the presence of one of these devices on its local network, extracting the scan_results bssid fields, and sending these fields in a geolocation/v1/geolocate Google Maps Geolocation API request.
El servicio API en dispositivos Google Home y Chromecast anteriores a mediados de julio de 2018 no evita ataques de reenlace DNS al leer los datos JSON scan_results. Esto permite que atacantes remotos determinen la ubicación física de la mayor parte de navegadores web aprovechando la presencia de uno de estos dispositivos en su red local, extrayendo los campos bssid scan_results y enviándolos en una petición geolocation/v1/geolocate de la API Geolocation de Google Maps.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2018-06-24 CVE Reserved
- 2018-06-25 CVE Published
- 2024-09-17 CVE Updated
- 2024-11-09 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
https://krebsonsecurity.com/2018/06/google-to-fix-location-data-leak-in-google-home-chromecast | Issue Tracking | |
https://medium.com/%40brannondorsey/attacking-private-networks-from-the-internet-with-dns-rebinding-ea7098a2d325 | X_refsource_misc | |
https://www.tripwire.com/state-of-security/vert/googles-newest-feature-find-my-home | Third Party Advisory | |
https://www.wired.com/story/chromecast-roku-sonos-dns-rebinding-vulnerability | Third Party Advisory |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Google Search vendor "Google" | Chromecast Firmware Search vendor "Google" for product "Chromecast Firmware" | - | - |
Affected
| in | Google Search vendor "Google" | Chromecast Search vendor "Google" for product "Chromecast" | - | - |
Safe
|
Google Search vendor "Google" | Home Firmware Search vendor "Google" for product "Home Firmware" | - | - |
Affected
| in | Google Search vendor "Google" | Home Search vendor "Google" for product "Home" | - | - |
Safe
|