CVE-2018-20069: Medium severity google chrome vulnerability
Published Jan 9, 2019
·Updated
Failure to prevent navigation to top frame to data URLs in Navigation in Google Chrome on iOS prior to 71.0.3578.80 allowed a remote attacker to confuse the user about the origin of the current page via a crafted HTML page.
Affected Software
2 affected components
Google Chrome<71.0.3578.80
iPhone OS
Event History
Jan 9, 2019
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-20069?
CVE-2018-20069 is classified as a medium severity vulnerability.
2
How do I fix CVE-2018-20069?
To fix CVE-2018-20069, update Google Chrome to version 71.0.3578.80 or later.
3
What systems are affected by CVE-2018-20069?
CVE-2018-20069 affects Google Chrome on iOS prior to version 71.0.3578.80.
4
What type of attack does CVE-2018-20069 involve?
CVE-2018-20069 involves confusion about the origin of the current page due to navigation vulnerabilities.
5
Can CVE-2018-20069 be exploited remotely?
Yes, CVE-2018-20069 can be exploited remotely by an attacker through a crafted HTML page.