Unrated severityNVD Advisory· Published Nov 14, 2018· Updated Aug 5, 2024
CVE-2018-6068
CVE-2018-6068
Description
Object lifecycle issue in Chrome Custom Tab in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Affected products
4- osv-coords2 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP2
< 93.0.4577.82-1.1+ 1 more
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 66.0.3359.181-55.1
Patches
Vulnerability mechanics
References
4- www.debian.org/security/2018/dsa-4182mitrevendor-advisoryx_refsource_DEBIAN
- www.securityfocus.com/bid/103297mitrevdb-entryx_refsource_BID
- chromereleases.googleblog.com/2018/03/stable-channel-update-for-desktop.htmlmitrex_refsource_CONFIRM
- crbug.com/798933mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.