PT-2013-4036 · Google+2 · Google Chrome+2

Published

2013-10-01

·

Updated

2024-06-15

·

CVE-2013-2918

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 30.0.1599.66
Description A use-after-free issue exists in the RenderBlock::collapseAnonymousBlockChild function, which is part of the DOM implementation in Blink. This issue can be exploited by remote attackers to cause a denial of service or possibly have other unspecified impacts. The exploitation is made possible by incorrect handling of parent-child relationships for anonymous blocks.
Recommendations For versions prior to 30.0.1599.66, update to version 30.0.1599.66 or later to resolve the issue.

Exploit

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2013-1102
CVE-2013-2918
DSA-2785-1
MGASA-2013-0306
OPENSUSE-SU-2013_1556-1
OPENSUSE-SU-2013_1861-1
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1

Affected Products

Alt Linux
Google Chrome
Suse