CVE-2019-13715: Medium severity google chrome (trace event) vulnerability
Published Nov 25, 2019
·Updated
Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
Affected Software
2 affected components
Google Chrome<78.0.3904.70
openSUSE Backports=15.0-sp1
Event History
Nov 25, 2019
CVE Published
via MITRE·02:22 PM
Data Sourced
via MITRE·02:22 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-13715?
CVE-2019-13715 has a severity rating of high due to its potential to enable domain spoofing.
2
How do I fix CVE-2019-13715?
To fix CVE-2019-13715, update Google Chrome to version 78.0.3904.70 or later.
3
What versions of Google Chrome are affected by CVE-2019-13715?
CVE-2019-13715 affects Google Chrome versions prior to 78.0.3904.70.
4
Who is impacted by CVE-2019-13715?
Users of Google Chrome versions prior to 78.0.3904.70 are impacted by CVE-2019-13715.
5
What type of attack does CVE-2019-13715 facilitate?
CVE-2019-13715 facilitates domain spoofing via IDN homographs through crafted domain names.