CVE Database
/

CVE-2020-6471

Back to search

CVE-2020-6471

Published: May 21, 2020

Modified: Aug 4, 2024

PUBLISHED

Description

Insufficient policy enforcement in developer tools in Google Chrome prior to 83.0.4103.61 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.

VendorProductVersions

Google

Chrome

affected
unspecified - < 83.0.4103.61

References

GLSA-202006-02
vendor-advisory
x_refsource_GENTOO
openSUSE-SU-2020:0823
vendor-advisory
x_refsource_SUSE
openSUSE-SU-2020:0832
vendor-advisory
x_refsource_SUSE
FEDORA-2020-08561721ad
vendor-advisory
x_refsource_FEDORA
DSA-4714
vendor-advisory
x_refsource_DEBIAN
FEDORA-2020-77f89ab772
vendor-advisory
x_refsource_FEDORA
GLSA-202101-30
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now