ALT-PU-2019-3331-1
Closed vulnerabilities
BDU:2020-01424
Уязвимость механизма ввода данных в Blink браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании и оказать воздействие на целостность данных
BDU:2020-01433
Уязвимость пользовательского интерфейса в Omnibox браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01438
Уязвимость механизма обработки внешних протоколов браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01439
Уязвимость механизма обработки файлов cookie браузера Google Chrome, связанная с раскрытием информации при обработке данных, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01440
Уязвимость механизма обработки аудио файлове браузера Google Chrome, связанная с раскрытием информации при обработке данных, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01441
Уязвимость механизма в Omnibox браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01465
Уязвимость механизма рендеринга в Android браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании и оказать воздействие на целостность данных
BDU:2020-01466
Уязвимость инструментов разработки браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01467
Уязвимость пользовательского интерфейса в Omnibox браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01505
Уязвимость пользовательского интерфейса в Omnibox браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01634
Уязвимость механизма навигации в Android браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01635
Уязвимость пользовательского интерфейса в Omnibox браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01636
Уязвимость пользовательского интерфейса браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01637
Уязвимость политики безопасности расширений браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю вызвать отказ в обслуживании
BDU:2020-01638
Уязвимость политики безопасности расширений браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01639
Уязвимость механизма обработки данных SQLite браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01644
Уязвимость механизма обработки данных SQLite браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01646
Уязвимость механизма инициализации данных SQLite браузера Google Chrome, позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным
BDU:2020-01693
Уязвимость браузера Google Chrome, связанная с использованием памяти после освобождения, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01694
Уязвимость браузера Google Chrome, связанная с выходом операции за границы буфера в памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01695
Уязвимость браузера Google Chrome, связанная с неправильным назначением прав доступа для критического ресурса, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01696
Уязвимость браузера Google Chrome, связанная с записью за границами буфера памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01697
Уязвимость браузера Google Chrome, связанная с использованием памяти после освобождения, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01698
Уязвимость браузера Google Chrome, связанная с доступом к ресурсу с использованием несовместимого типа, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01699
Уязвимость браузера Google Chrome, связанная с использованием памяти после освобождения, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01700
Уязвимость браузера Google Chrome, связанная с записью за границами буфера памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01701
Уязвимость браузера Google Chrome, связанная с записью за границами буфера памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01702
Уязвимость браузера Google Chrome, связанная с целочисленным переполнением, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01703
Уязвимость браузера Google Chrome, связанная с раскрытием информации, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации
BDU:2020-01704
Уязвимость браузера Google Chrome, связанная с неправильным назначением прав доступа для критического ресурса, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации и нарушить ее целостность и доступность
BDU:2020-01705
Уязвимость браузера Google Chrome, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю нарушить целостность данных
BDU:2020-01706
Уязвимость браузера Google Chrome, связанная с недостаточной проверкой вводимых данных, позволяющая нарушителю нарушить целостность данных
BDU:2020-01798
Уязвимость пользовательского интерфейса в интерстициалах браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01799
Уязвимость пользовательского интерфейса в Omnibox браузера Google Chrome, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01800
Уязвимость механизма загрузки браузера Google Chrome, связанная с недостатком механизма проверки вводимых данных, позволяющая нарушителю оказать воздействие на целостность данных
BDU:2020-01802
Уязвимость функции типизации в JavaScript браузера Google Chrome позволяющая нарушителю получить несанкционированный доступ к конфиденциальным данным, вызвать отказ в обслуживании и оказать воздействие на целостность данных
Modified: 2024-11-21
CVE-2019-13725
Use-after-free in Bluetooth in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025067
- https://crbug.com/1025067
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13726
Buffer overflow in password manager in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to execute arbitrary code via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1027152
- https://crbug.com/1027152
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13727
Insufficient policy enforcement in WebSockets in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass same origin policy via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/944619
- https://crbug.com/944619
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13728
Out of bounds write in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1024758
- https://crbug.com/1024758
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13729
Use-after-free in WebSockets in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025489
- https://crbug.com/1025489
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13730
Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1028862
- https://crbug.com/1028862
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13732
Use-after-free in WebAudio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1023817
- https://crbug.com/1023817
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13734
Out of bounds write in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- RHSA-2020:0227
- RHSA-2020:0227
- RHSA-2020:0229
- RHSA-2020:0229
- RHSA-2020:0273
- RHSA-2020:0273
- RHSA-2020:0451
- RHSA-2020:0451
- RHSA-2020:0463
- RHSA-2020:0463
- RHSA-2020:0476
- RHSA-2020:0476
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025466
- https://crbug.com/1025466
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- USN-4298-1
- USN-4298-1
- USN-4298-2
- USN-4298-2
- DSA-4606
- DSA-4606
- https://www.oracle.com/security-alerts/cpujan2022.html
- https://www.oracle.com/security-alerts/cpujan2022.html
Modified: 2024-11-21
CVE-2019-13735
Out of bounds write in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025468
- https://crbug.com/1025468
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13736
Integer overflow in PDFium in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1020899
- https://crbug.com/1020899
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13737
Insufficient policy enforcement in autocomplete in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1013882
- https://crbug.com/1013882
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13738
Insufficient policy enforcement in navigation in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass site isolation via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1017441
- https://crbug.com/1017441
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13739
Insufficient policy enforcement in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/824715
- https://crbug.com/824715
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13740
Incorrect security UI in sharing in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1005596
- https://crbug.com/1005596
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13741
Insufficient validation of untrusted input in Blink in Google Chrome prior to 79.0.3945.79 allowed a local attacker to bypass same origin policy via crafted clipboard content.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1011950
- https://crbug.com/1011950
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13742
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1017564
- https://crbug.com/1017564
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13743
Incorrect security UI in external protocol handling in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to spoof security UI via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/754304
- https://crbug.com/754304
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13744
Insufficient policy enforcement in cookies in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/853670
- https://crbug.com/853670
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13745
Insufficient policy enforcement in audio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/990867
- https://crbug.com/990867
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13746
Insufficient policy enforcement in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/999932
- https://crbug.com/999932
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13747
Uninitialized data in rendering in Google Chrome on Android prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1018528
- https://crbug.com/1018528
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13748
Insufficient policy enforcement in developer tools in Google Chrome prior to 79.0.3945.79 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/993706
- https://crbug.com/993706
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13749
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1010765
- https://crbug.com/1010765
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13750
Insufficient data validation in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass defense-in-depth measures via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025464
- https://crbug.com/1025464
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- USN-4298-1
- USN-4298-1
- USN-4298-2
- USN-4298-2
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13751
Uninitialized data in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025465
- https://crbug.com/1025465
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- USN-4298-1
- USN-4298-1
- USN-4298-2
- USN-4298-2
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13752
Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025470
- https://crbug.com/1025470
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- USN-4298-1
- USN-4298-1
- USN-4298-2
- USN-4298-2
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13753
Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1025471
- https://crbug.com/1025471
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- USN-4298-1
- USN-4298-1
- USN-4298-2
- USN-4298-2
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13754
Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/442579
- https://crbug.com/442579
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13755
Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to disable extensions via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/696208
- https://crbug.com/696208
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13756
Incorrect security UI in printing in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/708595
- https://crbug.com/708595
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13757
Incorrect security UI in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/884693
- https://crbug.com/884693
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13758
Insufficient policy enforcement in navigation in Google Chrome on Android prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/979441
- https://crbug.com/979441
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13759
Incorrect security UI in interstitials in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/901789
- https://crbug.com/901789
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13761
Incorrect security UI in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1002687
- https://crbug.com/1002687
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13762
Insufficient policy enforcement in downloads in Google Chrome on Windows prior to 79.0.3945.79 allowed a local attacker to spoof downloaded files via local code.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1004212
- https://crbug.com/1004212
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13763
Insufficient policy enforcement in payments in Google Chrome prior to 79.0.3945.79 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1011600
- https://crbug.com/1011600
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606
Modified: 2024-11-21
CVE-2019-13764
Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2692
- openSUSE-SU-2019:2694
- openSUSE-SU-2019:2694
- RHSA-2019:4238
- RHSA-2019:4238
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
- https://crbug.com/1028863
- https://crbug.com/1028863
- FEDORA-2019-1a10c04281
- FEDORA-2019-1a10c04281
- FEDORA-2020-4355ea258e
- FEDORA-2020-4355ea258e
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- 20200120 [SECURITY] [DSA 4606-1] chromium security update
- GLSA-202003-08
- GLSA-202003-08
- DSA-4606
- DSA-4606