Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2013-2902

Опубликовано: 21 авг. 2013
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 7.5

Описание

Use-after-free vulnerability in the XSLT ProcessingInstruction implementation in Blink, as used in Google Chrome before 29.0.1547.57, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to an applyXSLTransform call involving (1) an HTML document or (2) an xsl:processing-instruction element that is still in the process of loading.

РелизСтатусПримечание
devel

not-affected

29.0.1547.65-0ubuntu2
lucid

ignored

end of life
precise

released

30.0.1599.114-0ubuntu0.12.04.3
quantal

released

30.0.1599.114-0ubuntu0.12.10.2
raring

released

30.0.1599.114-0ubuntu0.13.04.2
saucy

not-affected

29.0.1547.65-0ubuntu2
upstream

released

29.0.1547.57

Показывать по

РелизСтатусПримечание
devel

not-affected

lucid

not-affected

precise

not-affected

quantal

not-affected

raring

not-affected

saucy

not-affected

upstream

needs-triage

Показывать по

EPSS

Процентиль: 75%
0.00887
Низкий

7.5 High

CVSS2

Связанные уязвимости

nvd
больше 12 лет назад

Use-after-free vulnerability in the XSLT ProcessingInstruction implementation in Blink, as used in Google Chrome before 29.0.1547.57, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to an applyXSLTransform call involving (1) an HTML document or (2) an xsl:processing-instruction element that is still in the process of loading.

debian
больше 12 лет назад

Use-after-free vulnerability in the XSLT ProcessingInstruction impleme ...

github
больше 3 лет назад

Use-after-free vulnerability in the XSLT ProcessingInstruction implementation in Blink, as used in Google Chrome before 29.0.1547.57, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to an applyXSLTransform call involving (1) an HTML document or (2) an xsl:processing-instruction element that is still in the process of loading.

EPSS

Процентиль: 75%
0.00887
Низкий

7.5 High

CVSS2