CVE-2019-13749: Medium severity google chrome vulnerability
An incorrect security ui flaw was found in the Omnibox component of the Chromium browser.
Upstream bug(s):
https://code.google.com/p/chromium/issues/detail?id=101076
External References:
https://chromereleases.googleblog.com/2019/12/stable-channel-update-for-desktop.html
Other sources
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2019-13749.
What is the title of the vulnerability?
The title of the vulnerability is 'Incorrect security UI in Omnibox in Google Chrome on iOS prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.'
What is the severity of CVE-2019-13749?
The severity of CVE-2019-13749 is medium with a CVSS score of 6.5.
Which software versions are affected by CVE-2019-13749?
Google Chrome on iOS prior to version 79.0.3945.79 is affected by CVE-2019-13749.
How can I fix CVE-2019-13749?
To fix CVE-2019-13749, update Google Chrome on iOS to version 79.0.3945.79 or higher.