CVE-2022-0112: Incorrect security UI in Browser UI
Incorrect security UI in Browser UI in Google Chrome prior to 97.0.4692.71 allowed a remote attacker to display missing URL or incorrect URL via a crafted URL.
Credit
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2022-0096
- CVE-2022-0097
- CVE-2022-0098
- CVE-2022-0099
- CVE-2022-0100
- CVE-2022-0101
- CVE-2022-0337
- CVE-2022-0102
- CVE-2022-0103
- CVE-2022-4924
- CVE-2022-0104
- CVE-2022-0105
- CVE-2022-0106
- CVE-2022-0107
- CVE-2022-0108
- CVE-2022-0109
- CVE-2022-0110
- CVE-2022-0111
- CVE-2022-0113
- CVE-2022-0114
- CVE-2022-0115
- CVE-2022-0116
- CVE-2022-0117
- CVE-2022-0118
- CVE-2022-0120
- CVE-2022-4925
Frequently Asked Questions
What is the severity of CVE-2022-0112?
CVE-2022-0112 is considered a medium-severity vulnerability due to its potential to mislead users with incorrect URLs.
How do I fix CVE-2022-0112?
To fix CVE-2022-0112, update your Google Chrome or Chromium browser to version 97.0.4692.71 or later.
What systems are affected by CVE-2022-0112?
CVE-2022-0112 affects multiple versions of Google Chrome and Chromium prior to 97.0.4692.71, as well as specific Fedora distributions.
What type of attack does CVE-2022-0112 enable?
CVE-2022-0112 allows a remote attacker to potentially display missing or incorrect URLs, which may lead to phishing attacks.
When was CVE-2022-0112 published?
CVE-2022-0112 was published in January 2022 as part of the regular Chrome security updates.