CVE-2023-2463: Inappropriate implementation in Full Screen Mode
Chromium: CVE-2023-2463 Inappropriate implementation in Full Screen Mode
Other sources
Inappropriate implementation in Full Screen Mode in Google Chrome on Android prior to 113.0.5672.63 allowed a remote attacker to hide the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: Medium)
This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.
Credit
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2023-2463?
CVE-2023-2463 is a vulnerability in Google Chrome on Android that allows a remote attacker to hide the contents of the Omnibox (URL bar) via a crafted HTML page.
What is the severity of CVE-2023-2463?
The severity of CVE-2023-2463 is Medium.
How does CVE-2023-2463 affect Chromium?
CVE-2023-2463 affects Chromium by causing an inappropriate implementation in Full Screen Mode, allowing the contents of the Omnibox to be hidden.
How do I fix CVE-2023-2463 in Google Chrome on Android?
To fix CVE-2023-2463 in Google Chrome on Android, update to version 113.0.5672.63 or later.
Where can I find more information about CVE-2023-2463?
You can find more information about CVE-2023-2463 on the Google Chrome Releases blog and the Debian Security Advisory.