CVE-2020-6472: Medium severity google chrome vulnerability
Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to obtain potentially sensitive information from process memory or disk via a crafted Chrome Extension.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2020-6472?
CVE-2020-6472 is considered a high severity vulnerability due to its potential to expose sensitive information.
How do I fix CVE-2020-6472?
To fix CVE-2020-6472, update Google Chrome or Chromium to version 83.0.4103.61 or later.
What type of attacks can occur due to CVE-2020-6472?
CVE-2020-6472 allows attackers to gain access to potentially sensitive information from browser process memory or disk when a malicious extension is installed.
Which versions of Google Chrome are affected by CVE-2020-6472?
CVE-2020-6472 affects Google Chrome versions prior to 83.0.4103.61.
Is there a risk of data leakage associated with CVE-2020-6472?
Yes, CVE-2020-6472 presents a risk of data leakage as it allows access to sensitive information through malicious extensions.