Unrated severityNVD Advisory· Published Nov 25, 2019· Updated Aug 5, 2024
CVE-2019-13708
CVE-2019-13708
Description
Inappropriate implementation in navigation in Google Chrome on iOS prior to 78.0.3904.70 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Affected products
11- osv-coords10 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/re2&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/re2&distro=openSUSE%20Leap%2015.1pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP3pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/re2&distro=SUSE%20Package%20Hub%2015%20SP1
< 78.0.3904.70-lp151.2.39.1+ 9 more
- (no CPE)range: < 78.0.3904.70-lp151.2.39.1
- (no CPE)range: < 78.0.3904.70-lp151.2.39.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 20190901-lp151.10.3.1
- (no CPE)range: < 20190901-lp151.10.3.1
- (no CPE)range: < 78.0.3904.87-10.1
- (no CPE)range: < 78.0.3904.70-bp150.240.1
- (no CPE)range: < 78.0.3904.70-bp151.3.21.1
- (no CPE)range: < 20190901-bp150.25.1
- (no CPE)range: < 20190901-bp151.6.3.1
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- lists.opensuse.org/opensuse-security-announce/2020-01/msg00008.htmlmitrevendor-advisoryx_refsource_SUSE
- chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_22.htmlmitrex_refsource_MISC
- crbug.com/931894mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.