Vulnerability Name:

CVE-2020-6574 (CCN-187894)

Assigned:2020-09-08
Published:2020-09-08
Updated:2023-01-31
Summary:
CVSS v3 Severity:7.8 High (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H)
6.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
6.5 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N)
5.7 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): High
Availibility (A): None
CVSS v2 Severity:4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): Partial
Integrity (I): Partial
Availibility (A): Partial
6.8 Medium (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:N/I:C/A:N)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): Complete
Availibility (A): None
Vulnerability Consequences:Bypass Security
References:Source: MITRE
Type: CNA
CVE-2020-6574

Source: chrome-cve-admin@google.com
Type: Mailing List, Patch, Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Broken Link
chrome-cve-admin@google.com

Source: CCN
Type: Google Chrome Releases Web site
Stable Channel Update for Desktop

Source: chrome-cve-admin@google.com
Type: Release Notes, Vendor Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Permissions Required, Vendor Advisory
chrome-cve-admin@google.com

Source: XF
Type: UNKNOWN
google-chrome-cve20206574-sec-bypass(187894)

Source: chrome-cve-admin@google.com
Type: Mailing List, Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Mailing List, Third Party Advisory
chrome-cve-admin@google.com

Source: chrome-cve-admin@google.com
Type: Third Party Advisory
chrome-cve-admin@google.com

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:20206574
V
CVE-2020-6574
2022-06-30
oval:org.opensuse.security:def:112066
P
chromedriver-93.0.4577.82-1.1 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:64833
P
Security update for busybox (Important) (in QA)
2022-01-14
oval:org.opensuse.security:def:64773
P
Security update for glibc (Moderate)
2021-12-08
oval:org.opensuse.security:def:64624
P
Security update for webkit2gtk3 (Important)
2021-12-02
oval:org.opensuse.security:def:64623
P
Security update for speex (Moderate)
2021-12-01
oval:org.opensuse.security:def:105615
P
chromedriver-93.0.4577.82-1.1 on GA media (Moderate)
2021-10-01
oval:org.opensuse.security:def:64571
P
Security update for apache2 (Important)
2021-09-03
oval:org.opensuse.security:def:63328
P
frr-7.4-2.25 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63341
P
libmariadb-devel-3.1.12-3.25.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63479
P
lame-3.100-1.33 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63122
P
aws-cli-1.18.117-8.11.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63384
P
vsftpd-3.0.3-7.16.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63125
P
kernel-azure-5.3.18-36.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63522
P
tiff-4.0.9-5.30.28 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:64731
P
Security update for the Linux Kernel (Important)
2021-07-15
oval:org.opensuse.security:def:64891
P
Security update for kubevirt (Moderate)
2021-07-09
oval:org.opensuse.security:def:64529
P
Security update for postgresql12 (Moderate)
2021-06-17
oval:org.opensuse.security:def:64528
P
Security update for postgresql10 (Moderate)
2021-06-14
oval:org.opensuse.security:def:62860
P
libtidy-devel-5.4.0-1.34 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:74637
P
Security update for hivex (Moderate)
2021-05-26
oval:org.opensuse.security:def:64487
P
Security update for bind (Important)
2021-05-04
oval:org.opensuse.security:def:63076
P
openldap2-2.4.46-9.3.1 on GA media (Moderate)
2021-04-29
oval:org.opensuse.security:def:64459
P
Security update for gssproxy (Moderate)
2021-04-06
oval:org.opensuse.security:def:64666
P
Security update for git (Important)
2021-03-09
oval:org.opensuse.security:def:64665
P
Security update for openssl-1_1 (Moderate)
2021-03-09
oval:org.opensuse.security:def:64272
P
Security update for the Linux Kernel (Important)
2020-12-09
oval:org.opensuse.security:def:63579
P
gstreamer-plugins-ugly-1.12.5-1.35 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63150
P
freeradius-server-3.0.16-1.41 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62660
P
libass-devel-0.14.0-1.25 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62683
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63118
P
python3-keystoneclient-3.15.0-2.33 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63621
P
icedtea-web-1.7.1-5.13 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62703
P
libthai0-32bit-0.1.27-1.16 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62659
P
libXvnc-devel-1.9.0-19.6.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63139
P
apache2-2.4.33-1.28 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62726
P
wireshark-devel-3.2.2-3.35.2 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63080
P
java-1_8_0-ibm-1.8.0_sr6.5-3.33.2 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62903
P
jython-2.2.1-4.36 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63083
P
libncurses5-32bit-6.1-5.6.2 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62702
P
libtag-devel-1.11.1-4.6.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63182
P
skopeo-0.1.26-2.39 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63108
P
aws-cli-1.16.61-6.22 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63286
P
libxmltooling-devel-1.6.4-3.3.2 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:64416
P
mailx on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64315
P
libXxf86vm-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64166
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:63748
P
Security update for ImageMagick (Moderate)
2020-12-01
oval:org.opensuse.security:def:74987
P
Security update for ntp (Moderate)
2020-12-01
oval:org.opensuse.security:def:63782
P
Security update for spice (Important)
2020-12-01
oval:org.opensuse.security:def:64417
P
minicom on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64075
P
Security update for ovmf (Moderate)
2020-12-01
oval:org.opensuse.security:def:75120
P
Security update for opera (Important)
2020-12-01
oval:org.opensuse.security:def:63929
P
Security update for openexr (Moderate)
2020-12-01
oval:org.opensuse.security:def:74468
P
Security update for bluez (Moderate)
2020-12-01
oval:org.opensuse.security:def:64209
P
apparmor-abstractions on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64158
P
Security update for tigervnc (Critical)
2020-12-01
oval:org.opensuse.security:def:74594
P
Security update for chromium (Important)
2020-12-01
oval:org.opensuse.security:def:63824
P
Security update for qemu (Important)
2020-12-01
oval:org.opensuse.security:def:63971
P
Security update for mariadb-100 (Moderate)
2020-12-01
oval:org.opensuse.security:def:74511
P
Security update for libvpx (Important)
2020-12-01
oval:org.opensuse.security:def:64200
P
ruby2.5-rubygem-nokogiri on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65003
P
Security update for wireshark (Moderate)
2020-12-01
oval:org.opensuse.security:def:64875
P
Security update for openssl-1_1 (Moderate)
2020-12-01
oval:org.opensuse.security:def:63705
P
Security update for vim (Important)
2020-12-01
oval:org.opensuse.security:def:74945
P
Security update for uftpd (Moderate)
2020-12-01
oval:org.opensuse.security:def:64933
P
Security update for xen (Important)
2020-12-01
oval:org.opensuse.security:def:64374
P
libpulse-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64032
P
Security update for vino (Moderate)
2020-12-01
oval:org.opensuse.security:def:75078
P
Security update for chromium (Important)
2020-12-01
oval:org.opensuse.security:def:65045
P
Security update for libproxy (Important)
2020-12-01
oval:org.opensuse.security:def:100236
P
(Moderate)
2020-10-28
oval:org.opensuse.security:def:110261
P
Security update for opera (Important)
2020-10-23
oval:org.opensuse.security:def:110815
P
Security update for opera (Important)
2020-10-23
oval:org.opensuse.security:def:93523
P
Security update for chromium (Important)
2020-09-24
oval:org.opensuse.security:def:109713
P
Security update for chromium (Important)
2020-09-23
oval:org.opensuse.security:def:103056
P
Security update for chromium (Important)
2020-09-23
oval:org.opensuse.security:def:96366
P
Security update for chromium (Important)
2020-09-23
oval:org.opensuse.security:def:110773
P
Security update for chromium (Important)
2020-09-22
oval:org.opensuse.security:def:110218
P
Security update for chromium (Important)
2020-09-22
BACK