PT-2013-6062 · Google+2 · Google Chrome+2

Published

2013-11-18

·

Updated

2024-06-15

·

CVE-2013-6635

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 31.0.1650.63
Description A use-after-free issue in the editing implementation in Blink allows remote attackers to cause a denial of service or possibly have unspecified other impact via JavaScript code that triggers removal of a node during processing of the DOM tree, related to CompositeEditCommand.cpp and ReplaceSelectionCommand.cpp.
Recommendations For Google Chrome versions prior to 31.0.1650.63, update to version 31.0.1650.63 or later to resolve the issue. As a temporary workaround, consider disabling JavaScript processing for untrusted sources until the update is applied.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2013-1266
CVE-2013-6635
DSA-2811-1
MGASA-2013-0383
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1

Affected Products

Alt Linux
Google Chrome
Itunes