CVE-2020-6522 — Google Chrome vulnerability
10 documents8 sources
Severity
9.6CRITICALNVD
EPSS
2.3%
top 15.31%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 22
Latest updateMay 24
Description
Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:HExploitability: 2.8 | Impact: 6.0
Affected Packages5 packages
Also affects: Debian Linux 10.0, Fedora 31, 32
🔴Vulnerability Details
3GHSA▶
GHSA-9rvq-6f2m-cpq4: Inappropriate implementation in external protocol handlers in Google Chrome prior to 84↗2022-05-24
CVEList▶
CVE-2020-6522: Inappropriate implementation in external protocol handlers in Google Chrome prior to 84↗2020-07-22
OSV▶
CVE-2020-6522: Inappropriate implementation in external protocol handlers in Google Chrome prior to 84↗2020-07-22
📋Vendor Advisories
3💬Community
3Bugzilla▶
CVE-2020-6510 CVE-2020-6511 CVE-2020-6512 CVE-2020-6513 CVE-2020-6514 CVE-2020-6515 CVE-2020-6516 CVE-2020-6517 CVE-2020-6518 CVE-2020-6519 CVE-2020-6520 CVE-2020-6521 CVE-2020-6522 CVE-2020-6523 CVE-↗2020-07-15
Bugzilla▶
CVE-2020-6510 CVE-2020-6511 CVE-2020-6512 CVE-2020-6513 CVE-2020-6514 CVE-2020-6515 CVE-2020-6516 CVE-2020-6517 CVE-2020-6518 CVE-2020-6519 CVE-2020-6520 CVE-2020-6521 CVE-2020-6522 CVE-2020-6523 CVE-↗2020-07-15
Bugzilla▶
CVE-2020-6522 chromium-browser: Inappropriate implementation in external protocol handlers↗2020-07-15