First published: Mon Nov 25 2019(Updated: )
Insufficient validation of untrusted input in Omnibox in Google Chrome prior to 78.0.3904.70 allowed a remote attacker to perform domain spoofing via IDN homographs via a crafted domain name.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <78.0.3904.70 | |
openSUSE Backports | =15.0-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-13715 has a severity rating of high due to its potential to enable domain spoofing.
To fix CVE-2019-13715, update Google Chrome to version 78.0.3904.70 or later.
CVE-2019-13715 affects Google Chrome versions prior to 78.0.3904.70.
Users of Google Chrome versions prior to 78.0.3904.70 are impacted by CVE-2019-13715.
CVE-2019-13715 facilitates domain spoofing via IDN homographs through crafted domain names.