CVE-2020-6476: Medium severity google chrome vulnerability
Insufficient policy enforcement in tab strip in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted Chrome Extension.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-6476?
CVE-2020-6476 has been rated as high severity due to its potential for exploitation through malicious extensions.
How do I fix CVE-2020-6476?
To fix CVE-2020-6476, ensure that your Google Chrome is updated to version 83.0.4103.61 or later.
What does CVE-2020-6476 affect?
CVE-2020-6476 affects Google Chrome versions prior to 83.0.4103.61 and various distributions using affected versions of Chromium.
Can CVE-2020-6476 be exploited remotely?
Yes, CVE-2020-6476 can be exploited remotely if a user is convinced to install a malicious Chrome extension.
What type of vulnerability is CVE-2020-6476?
CVE-2020-6476 is classified as an insufficient policy enforcement vulnerability in the tab strip of Google Chrome.