CVE-2022-4923: Inappropriate implementation in Omnibox
Published Sep 20, 2021
·Updated
Inappropriate implementation in Omnibox in Google Chrome prior to 99.0.4844.51 allowed an attacker in a privileged network position to perform a man-in-the-middle attack via malicious network traffic. (Chromium security severity: Low)
Credit
elias.com@@lousseief
Affected Software
2 affected componentsFixes available
Google Chrome<99.0.4844.51
99.0.4844.51
Google Chrome<99.0.4844.51
Event History
Sep 20, 2021
CVE Published
12:00 AM
Jul 28, 2023
CVE Published
via MITRE·11:26 PM
Data Sourced
via MITRE·11:26 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2022-4923?
The severity of CVE-2022-4923 is classified as Low.
2
What type of attack is possible due to CVE-2022-4923?
CVE-2022-4923 allows an attacker to perform a man-in-the-middle attack.
3
Which versions of Google Chrome are affected by CVE-2022-4923?
CVE-2022-4923 affects Google Chrome versions prior to 99.0.4844.51.
4
How do I fix CVE-2022-4923?
To fix CVE-2022-4923, update your Google Chrome to version 99.0.4844.51 or later.
5
Who is the vendor for the affected software in CVE-2022-4923?
The vendor for the affected software in CVE-2022-4923 is Google.