Your submission was sent successfully! Close

CVE-2020-6433

Published: 13 April 2020

Insufficient policy enforcement in extensions in Google Chrome prior to 81.0.4044.92 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.

Priority

Medium

CVSS 3 base score: 4.3

Status

Package Release Status
chromium-browser
Launchpad, Ubuntu, Debian
bionic
Released (81.0.4044.122-0ubuntu0.18.04.1)
eoan Not vulnerable
(code not present)
focal Not vulnerable
(code not present)
precise Does not exist

trusty Does not exist

upstream
Released (81.0.4044.92)
xenial
Released (81.0.4044.122-0ubuntu0.16.04.1)

Notes

AuthorNote
amurray
The Debian chromium source package is called chromium-browser in
Ubuntu
mdeslaur
starting with Ubuntu 19.10, the chromium-browser package is just
a script that installs the Chromium snap

References

Bugs