With current Chrome versions (tried with 58 and 59 on two different machines) the behavior described in
bug 6450 seems to be reintroduced: the value of a cookie set in a response with 401 status is not respected and a previously set cookie is returned to the server instead on the following request.
C: GET resource1
S: 200, Set-Cookie: CookieName=value1
C: GET resource2, Cookie:CookieName=value1
S: 401, Set-Cookie: CookieName=value2
C: GET resource2, Cookie:CookieName=value1
...
The client should sent value2, but it sends value1.