First published: Tue Nov 16 2021(Updated: )
Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 98.0.4758.80 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Credit: chrome-cve-admin@google.com chrome-cve-admin@google.com Irvan Kurniawan (sourc7)
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <98.0.4758.80 | |
Google Android | ||
Google Chrome | <98.0.4758.80 | 98.0.4758.80 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
The vulnerability ID for this issue is CVE-2022-0455.
The severity of CVE-2022-0455 is medium with a CVSS score of 6.5.
Google Chrome on Android prior to version 98.0.4758.80 is affected by CVE-2022-0455.
A remote attacker can exploit CVE-2022-0455 by spoofing the contents of the Omnibox (URL bar) via a crafted HTML page.
No, Google Android is not affected by CVE-2022-0455.
To fix CVE-2022-0455, update Google Chrome on Android to version 98.0.4758.80 or later.