CVE-2013-2903
- EPSS 0.89%
- Veröffentlicht 21.08.2013 12:17:56
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the HTMLMediaElement::didMoveToNewDocument function in core/html/HTMLMediaElement.cpp in Blink, as used in Google Chrome before 29.0.1547.57, allows remote attackers to cause a denial of service or possibly have unspec...
CVE-2013-2904
- EPSS 1.02%
- Veröffentlicht 21.08.2013 12:17:56
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the Document::finishedParsing function in core/dom/Document.cpp in Blink, as used in Google Chrome before 29.0.1547.57, allows remote attackers to cause a denial of service or possibly have unspecified other impact via...
- EPSS 0.14%
- Veröffentlicht 21.08.2013 12:17:56
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SharedMemory::Create function in memory/shared_memory_posix.cc in Google Chrome before 29.0.1547.57 uses weak permissions under /dev/shm/, which allows attackers to obtain sensitive information via direct access to a POSIX shared-memory file.
CVE-2013-4242
- EPSS 0.16%
- Veröffentlicht 19.08.2013 23:55:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
GnuPG before 1.4.14, and Libgcrypt before 1.5.3 as used in GnuPG 2.0.x and possibly other products, allows local users to obtain private RSA keys via a cache side-channel attack involving the L3 cache, aka Flush+Reload.
CVE-2013-4852
- EPSS 1.75%
- Veröffentlicht 19.08.2013 23:55:09
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in PuTTY 0.62 and earlier, WinSCP before 5.1.6, and other products that use PuTTY allows remote SSH servers to cause a denial of service (crash) and possibly execute arbitrary code in certain applications that use PuTTY via a negativ...
- EPSS 0.08%
- Veröffentlicht 19.08.2013 13:07:58
- Zuletzt bearbeitet 11.04.2025 00:51:21
HAProxy 1.4 before 1.4.24 and 1.5 before 1.5-dev19, when configured to use hdr_ip or other "hdr_*" functions with a negative occurrence count, allows remote attackers to cause a denial of service (negative array index usage and crash) via an HTTP hea...
CVE-2013-2886
- EPSS 0.4%
- Veröffentlicht 31.07.2013 13:20:14
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in Google Chrome before 28.0.1500.95 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2013-2881
- EPSS 0.37%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 28.0.1500.95 does not properly handle frames, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
CVE-2013-2882
- EPSS 1.72%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
CVE-2013-2883
- EPSS 0.89%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to deleting the registration of a MutationObserver object.