PT-2019-4615 · Google+3 · Google Chrome+3

Ronni Skansing

·

Published

2019-03-12

·

Updated

2024-06-15

·

CVE-2019-5802

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 73.0.3683.75
Description The issue is related to incorrect handling of download origins in Navigation, allowing a remote attacker to perform domain spoofing via a crafted HTML page. Additionally, it involves an integer overflow vulnerability that can be exploited by a remote attacker to compromise data integrity using a specially crafted HTML page.
Recommendations For versions prior to 73.0.3683.75, update to version 73.0.3683.75 or later to resolve the issue.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1529
BDU:2020-00750
CVE-2019-5802
DSA-4421-1
OPENSUSE-SU-2019:1062-1
OPENSUSE-SU-2019:1666-1
OPENSUSE-SU-2019_0343-1
OPENSUSE-SU-2019_1062-1
OPENSUSE-SU-2019_1666-1
OPENSUSE-SU-2024:10681-1
OPENSUSE-SU-2024:12948-1
RHSA-2019:0708
RHSA-2019_0708

Affected Products

Alt Linux
Google Chrome
Red Hat
Suse