PT-2014-3153 · Google+1 · Google Chrome+1

Theshow3511

·

Published

2014-02-20

·

Updated

2024-06-15

·

CVE-2013-6654

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Google Chrome versions prior to 33.0.1750.117
Description The issue arises from the SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp within Blink, which is used in Google Chrome. This function does not properly handle unexpected data types. As a result, remote attackers can cause a denial of service due to an incorrect cast, or possibly have other unspecified impacts, via unknown vectors.
Recommendations For versions prior to 33.0.1750.117, update to version 33.0.1750.117 or later to resolve the issue.

Exploit

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2014-1282
CVE-2013-6654
DSA-2883-1
MGASA-2014-0107
OPENSUSE-SU-2024:10171-1
OPENSUSE-SU-2024:12948-1

Affected Products

Alt Linux
Google Chrome