Unrated severityNVD Advisory· Published Nov 25, 2019· Updated Aug 4, 2024
CVE-2019-5865
CVE-2019-5865
Description
Insufficient policy enforcement in navigations in Google Chrome prior to 76.0.3809.87 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page.
Affected products
7- osv-coords6 versionspkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.0pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1pkg:rpm/opensuse/chromium&distro=openSUSE%20Tumbleweedpkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2012%20SP3pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1
< 76.0.3809.87-lp150.224.1+ 5 more
- (no CPE)range: < 76.0.3809.87-lp150.224.1
- (no CPE)range: < 76.0.3809.87-lp151.2.15.1
- (no CPE)range: < 93.0.4577.82-1.1
- (no CPE)range: < 78.0.3904.87-10.1
- (no CPE)range: < 76.0.3809.87-bp150.220.1
- (no CPE)range: < 76.0.3809.87-bp151.3.3.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- chromereleases.googleblog.com/2019/07/stable-channel-update-for-desktop_30.htmlmitrex_refsource_MISC
- crbug.com/973103mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.