Information disclosure in Google Chrome - CVE-2019-13711

 

Information disclosure in Google Chrome - CVE-2019-13711

Published: October 24, 2019


Vulnerability identifier: #VU22224
CSH Severity: Low
CVSS v4: 5.1 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:L/VI:N/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2019-13711
CWE-ID: CWE-200
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to gain access to potentially sensitive information.

The vulnerability exists due to unspecified error. A remote attacker can gain unauthorized access to sensitive information from another security context.


Affected software

Google Chrome
Arch Linux
Red Hat Enterprise Linux Server
Red Hat Enterprise Linux Workstation
Red Hat Enterprise Linux Desktop
Opensuse
SUSE Linux

How to mitigate CVE-2019-13711

Install updates from vendor's website.

Google Chrome - update to 78.0.3904.70

External References

Related Security Bulletins