CVE-2019-13743: Medium severity google chrome vulnerability
An incorrect security ui flaw was found in the external protocol handling component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=754304
External References:
https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
Other sources
Incorrect security UI in external protocol handling in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to spoof security UI via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2019-13743.
What software versions are affected by this vulnerability?
Google Chrome versions prior to 79.0.3945.79 are affected by this vulnerability.
What is the severity of CVE-2019-13743?
The severity of CVE-2019-13743 is medium with a CVSS score of 6.5.
How can a remote attacker exploit this vulnerability?
A remote attacker can exploit this vulnerability by spoofing security UI via a crafted HTML page.
How can I fix CVE-2019-13743?
To fix CVE-2019-13743, update Google Chrome to version 79.0.3945.79 or later.