CVE-2013-2885
Vulnerability Summary
Timeline
Description
Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to not properly considering focus during the processing of JavaScript events in the presence of a multiple-fields input type.
CVSS Metrics
- v2.0•HIGH•Score: 7.5AV:N/AC:L/Au:N/C:P/I:P/A:P
EPSS Trends
Current EPSS score: 1.38%• Percentile: 81%
Techniques & Countermeasures
- CWE-399•Resource Management Errors
Weaknesses in this category are related to improper management of system resources.
Affected Systems
- debian•debian_linux
7.0
- google•chrome
≤ 28.0.1500.94 | 28.0.1500.0 | 28.0.1500.2 | 28.0.1500.3 | 28.0.1500.4 | 28.0.1500.5 | 28.0.1500.6 | 28.0.1500.8 | 28.0.1500.9 | 28.0.1500.10 | 28.0.1500.11 | 28.0.1500.12 | 28.0.1500.13 | 28.0.1500.14 | 28.0.1500.15 | 28.0.1500.16 | 28.0.1500.17 | 28.0.1500.18 | 28.0.1500.19 | 28.0.1500.20 | 28.0.1500.21 | 28.0.1500.22 | 28.0.1500.23 | 28.0.1500.24 | 28.0.1500.25 | 28.0.1500.26 | 28.0.1500.27 | 28.0.1500.28 | 28.0.1500.29 | 28.0.1500.31 | 28.0.1500.32 | 28.0.1500.33 | 28.0.1500.34 | 28.0.1500.35 | 28.0.1500.36 | 28.0.1500.37 | 28.0.1500.38 | 28.0.1500.39 | 28.0.1500.40 | 28.0.1500.41 | 28.0.1500.42 | 28.0.1500.43 | 28.0.1500.44 | 28.0.1500.45 | 28.0.1500.46 | 28.0.1500.47 | 28.0.1500.48 | 28.0.1500.49 | 28.0.1500.50 | 28.0.1500.51 | 28.0.1500.52 | 28.0.1500.53 | 28.0.1500.54 | 28.0.1500.56 | 28.0.1500.58 | 28.0.1500.59 | 28.0.1500.60 | 28.0.1500.61 | 28.0.1500.62 | 28.0.1500.63 | 28.0.1500.64 | 28.0.1500.66 | 28.0.1500.68 | 28.0.1500.70 | 28.0.1500.71 | 28.0.1500.72 | 28.0.1500.89 | 28.0.1500.91 | 28.0.1500.93
References (7)
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17672
- http://www.debian.org/security/2013/dsa-2732
- https://chromium.googlesource.com/chromium/blink/+/7a7ea525c912f6e59aa3e915e7f2cf140c077a49
- https://code.google.com/p/chromium/issues/detail?id=257353
- http://googlechromereleases.blogspot.com/2013/07/stable-channel-update_30.html
- https://chromium.googlesource.com/chromium/blink/+/dd13a061c49579e40f381b2dc9409fb0a920ec19%5E
- https://code.google.com/p/chromium/issues/detail?id=249640