CVE-2019-5812: URL spoof in Omnibox on iOS
Published Jan 26, 2019
·Updated
Inadequate security UI in iOS UI in Google Chrome prior to 74.0.3729.108 allowed a remote attacker to perform domain spoofing via a crafted HTML page.
Credit
Khalil Zhani
Affected Software
4 affected componentsFixes available
Google Chrome<74.0.3729.108
74.0.3729.108
Google Chrome<74.0.3729.108
iPhone OS
fedoraproject fedora=29
Event History
Jan 26, 2019
CVE Published
12:00 AM
Jun 27, 2019
CVE Published
via MITRE·04:13 PM
Data Sourced
via MITRE·04:13 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2019-5812?
CVE-2019-5812 has been classified as a high-severity vulnerability due to its potential for domain spoofing.
2
How do I fix CVE-2019-5812?
To resolve CVE-2019-5812, you should update Google Chrome to version 74.0.3729.108 or later.
3
What does CVE-2019-5812 exploit?
CVE-2019-5812 exploits inadequate security UI in Google Chrome, allowing remote attackers to perform domain spoofing.
4
Which versions of Google Chrome are affected by CVE-2019-5812?
CVE-2019-5812 affects all versions of Google Chrome prior to 74.0.3729.108.
5
Is iOS affected by CVE-2019-5812?
No, the Apple iPhone OS is not affected by CVE-2019-5812 as it has no vulnerabilities related to this issue.