Lucene search

K
cveChromeCVE-2013-2877
HistoryJul 10, 2013 - 10:55 a.m.

CVE-2013-2877

2013-07-1010:55:02
CWE-119
Chrome
web.nvd.nist.gov
91
cve-2013-2877
libxml2
denial of service
out-of-bounds read
xml_parser_eof
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.6

Confidence

High

EPSS

0.046

Percentile

92.6%

parser.c in libxml2 before 2.9.0, as used in Google Chrome before 28.0.1500.71 and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a document that ends abruptly, related to the lack of certain checks for the XML_PARSER_EOF state.

Affected configurations

Nvd
Node
googlechromeRange28.0.1500.70
OR
googlechromeMatch28.0.1500.0
OR
googlechromeMatch28.0.1500.2
OR
googlechromeMatch28.0.1500.3
OR
googlechromeMatch28.0.1500.4
OR
googlechromeMatch28.0.1500.5
OR
googlechromeMatch28.0.1500.6
OR
googlechromeMatch28.0.1500.8
OR
googlechromeMatch28.0.1500.9
OR
googlechromeMatch28.0.1500.10
OR
googlechromeMatch28.0.1500.11
OR
googlechromeMatch28.0.1500.12
OR
googlechromeMatch28.0.1500.13
OR
googlechromeMatch28.0.1500.14
OR
googlechromeMatch28.0.1500.15
OR
googlechromeMatch28.0.1500.16
OR
googlechromeMatch28.0.1500.17
OR
googlechromeMatch28.0.1500.18
OR
googlechromeMatch28.0.1500.19
OR
googlechromeMatch28.0.1500.20
OR
googlechromeMatch28.0.1500.21
OR
googlechromeMatch28.0.1500.22
OR
googlechromeMatch28.0.1500.23
OR
googlechromeMatch28.0.1500.24
OR
googlechromeMatch28.0.1500.25
OR
googlechromeMatch28.0.1500.26
OR
googlechromeMatch28.0.1500.27
OR
googlechromeMatch28.0.1500.28
OR
googlechromeMatch28.0.1500.29
OR
googlechromeMatch28.0.1500.31
OR
googlechromeMatch28.0.1500.32
OR
googlechromeMatch28.0.1500.33
OR
googlechromeMatch28.0.1500.34
OR
googlechromeMatch28.0.1500.35
OR
googlechromeMatch28.0.1500.36
OR
googlechromeMatch28.0.1500.37
OR
googlechromeMatch28.0.1500.38
OR
googlechromeMatch28.0.1500.39
OR
googlechromeMatch28.0.1500.40
OR
googlechromeMatch28.0.1500.41
OR
googlechromeMatch28.0.1500.42
OR
googlechromeMatch28.0.1500.43
OR
googlechromeMatch28.0.1500.44
OR
googlechromeMatch28.0.1500.45
OR
googlechromeMatch28.0.1500.46
OR
googlechromeMatch28.0.1500.47
OR
googlechromeMatch28.0.1500.48
OR
googlechromeMatch28.0.1500.49
OR
googlechromeMatch28.0.1500.50
OR
googlechromeMatch28.0.1500.51
OR
googlechromeMatch28.0.1500.52
OR
googlechromeMatch28.0.1500.53
OR
googlechromeMatch28.0.1500.54
OR
googlechromeMatch28.0.1500.56
OR
googlechromeMatch28.0.1500.58
OR
googlechromeMatch28.0.1500.59
OR
googlechromeMatch28.0.1500.60
OR
googlechromeMatch28.0.1500.61
OR
googlechromeMatch28.0.1500.62
OR
googlechromeMatch28.0.1500.63
OR
googlechromeMatch28.0.1500.64
OR
googlechromeMatch28.0.1500.66
OR
googlechromeMatch28.0.1500.68
OR
xmlsoftlibxml2Range2.9.0rc1
OR
xmlsoftlibxml2Match1.7.0
OR
xmlsoftlibxml2Match1.7.1
OR
xmlsoftlibxml2Match1.7.2
OR
xmlsoftlibxml2Match1.7.3
OR
xmlsoftlibxml2Match1.7.4
OR
xmlsoftlibxml2Match1.8.0
OR
xmlsoftlibxml2Match1.8.1
OR
xmlsoftlibxml2Match1.8.2
OR
xmlsoftlibxml2Match1.8.3
OR
xmlsoftlibxml2Match1.8.4
OR
xmlsoftlibxml2Match1.8.5
OR
xmlsoftlibxml2Match1.8.6
OR
xmlsoftlibxml2Match1.8.7
OR
xmlsoftlibxml2Match1.8.9
OR
xmlsoftlibxml2Match1.8.10
OR
xmlsoftlibxml2Match1.8.13
OR
xmlsoftlibxml2Match1.8.14
OR
xmlsoftlibxml2Match1.8.16
OR
xmlsoftlibxml2Match2.0.0
OR
xmlsoftlibxml2Match2.1.0
OR
xmlsoftlibxml2Match2.1.1
OR
xmlsoftlibxml2Match2.2.0
OR
xmlsoftlibxml2Match2.2.0beta
OR
xmlsoftlibxml2Match2.2.1
OR
xmlsoftlibxml2Match2.2.2
OR
xmlsoftlibxml2Match2.2.3
OR
xmlsoftlibxml2Match2.2.4
OR
xmlsoftlibxml2Match2.2.5
OR
xmlsoftlibxml2Match2.2.6
OR
xmlsoftlibxml2Match2.2.7
OR
xmlsoftlibxml2Match2.2.8
OR
xmlsoftlibxml2Match2.2.9
OR
xmlsoftlibxml2Match2.2.10
OR
xmlsoftlibxml2Match2.2.11
OR
xmlsoftlibxml2Match2.3.0
OR
xmlsoftlibxml2Match2.3.1
OR
xmlsoftlibxml2Match2.3.2
OR
xmlsoftlibxml2Match2.3.3
OR
xmlsoftlibxml2Match2.3.4
OR
xmlsoftlibxml2Match2.3.5
OR
xmlsoftlibxml2Match2.3.6
OR
xmlsoftlibxml2Match2.3.7
OR
xmlsoftlibxml2Match2.3.8
OR
xmlsoftlibxml2Match2.3.9
OR
xmlsoftlibxml2Match2.3.10
OR
xmlsoftlibxml2Match2.3.11
OR
xmlsoftlibxml2Match2.3.12
OR
xmlsoftlibxml2Match2.3.13
OR
xmlsoftlibxml2Match2.3.14
OR
xmlsoftlibxml2Match2.4.1
OR
xmlsoftlibxml2Match2.4.2
OR
xmlsoftlibxml2Match2.4.3
OR
xmlsoftlibxml2Match2.4.4
OR
xmlsoftlibxml2Match2.4.5
OR
xmlsoftlibxml2Match2.4.6
OR
xmlsoftlibxml2Match2.4.7
OR
xmlsoftlibxml2Match2.4.8
OR
xmlsoftlibxml2Match2.4.9
OR
xmlsoftlibxml2Match2.4.10
OR
xmlsoftlibxml2Match2.4.11
OR
xmlsoftlibxml2Match2.4.12
OR
xmlsoftlibxml2Match2.4.13
OR
xmlsoftlibxml2Match2.4.14
OR
xmlsoftlibxml2Match2.4.15
OR
xmlsoftlibxml2Match2.4.16
OR
xmlsoftlibxml2Match2.4.17
OR
xmlsoftlibxml2Match2.4.18
OR
xmlsoftlibxml2Match2.4.19
OR
xmlsoftlibxml2Match2.4.20
OR
xmlsoftlibxml2Match2.4.21
OR
xmlsoftlibxml2Match2.4.22
OR
xmlsoftlibxml2Match2.4.23
OR
xmlsoftlibxml2Match2.4.24
OR
xmlsoftlibxml2Match2.4.25
OR
xmlsoftlibxml2Match2.4.26
OR
xmlsoftlibxml2Match2.4.27
OR
xmlsoftlibxml2Match2.4.28
OR
xmlsoftlibxml2Match2.4.29
OR
xmlsoftlibxml2Match2.4.30
OR
xmlsoftlibxml2Match2.5.0
OR
xmlsoftlibxml2Match2.5.4
OR
xmlsoftlibxml2Match2.5.7
OR
xmlsoftlibxml2Match2.5.8
OR
xmlsoftlibxml2Match2.5.10
OR
xmlsoftlibxml2Match2.5.11
OR
xmlsoftlibxml2Match2.6.0
OR
xmlsoftlibxml2Match2.6.1
OR
xmlsoftlibxml2Match2.6.2
OR
xmlsoftlibxml2Match2.6.3
OR
xmlsoftlibxml2Match2.6.4
OR
xmlsoftlibxml2Match2.6.5
OR
xmlsoftlibxml2Match2.6.6
OR
xmlsoftlibxml2Match2.6.7
OR
xmlsoftlibxml2Match2.6.8
OR
xmlsoftlibxml2Match2.6.9
OR
xmlsoftlibxml2Match2.6.11
OR
xmlsoftlibxml2Match2.6.12
OR
xmlsoftlibxml2Match2.6.13
OR
xmlsoftlibxml2Match2.6.14
OR
xmlsoftlibxml2Match2.6.16
OR
xmlsoftlibxml2Match2.6.17
OR
xmlsoftlibxml2Match2.6.18
OR
xmlsoftlibxml2Match2.6.20
OR
xmlsoftlibxml2Match2.6.21
OR
xmlsoftlibxml2Match2.6.22
OR
xmlsoftlibxml2Match2.6.23
OR
xmlsoftlibxml2Match2.6.24
OR
xmlsoftlibxml2Match2.6.25
OR
xmlsoftlibxml2Match2.6.26
OR
xmlsoftlibxml2Match2.6.27
OR
xmlsoftlibxml2Match2.6.28
OR
xmlsoftlibxml2Match2.6.29
OR
xmlsoftlibxml2Match2.6.30
OR
xmlsoftlibxml2Match2.6.31
OR
xmlsoftlibxml2Match2.6.32
OR
xmlsoftlibxml2Match2.7.0
OR
xmlsoftlibxml2Match2.7.1
OR
xmlsoftlibxml2Match2.7.2
OR
xmlsoftlibxml2Match2.7.3
OR
xmlsoftlibxml2Match2.7.4
OR
xmlsoftlibxml2Match2.7.5
OR
xmlsoftlibxml2Match2.7.6
OR
xmlsoftlibxml2Match2.7.7
OR
xmlsoftlibxml2Match2.7.8
OR
xmlsoftlibxml2Match2.8.0
VendorProductVersionCPE
googlechrome*cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
googlechrome28.0.1500.0cpe:2.3:a:google:chrome:28.0.1500.0:*:*:*:*:*:*:*
googlechrome28.0.1500.2cpe:2.3:a:google:chrome:28.0.1500.2:*:*:*:*:*:*:*
googlechrome28.0.1500.3cpe:2.3:a:google:chrome:28.0.1500.3:*:*:*:*:*:*:*
googlechrome28.0.1500.4cpe:2.3:a:google:chrome:28.0.1500.4:*:*:*:*:*:*:*
googlechrome28.0.1500.5cpe:2.3:a:google:chrome:28.0.1500.5:*:*:*:*:*:*:*
googlechrome28.0.1500.6cpe:2.3:a:google:chrome:28.0.1500.6:*:*:*:*:*:*:*
googlechrome28.0.1500.8cpe:2.3:a:google:chrome:28.0.1500.8:*:*:*:*:*:*:*
googlechrome28.0.1500.9cpe:2.3:a:google:chrome:28.0.1500.9:*:*:*:*:*:*:*
googlechrome28.0.1500.10cpe:2.3:a:google:chrome:28.0.1500.10:*:*:*:*:*:*:*
Rows per page:
1-10 of 1891

References

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

7.6

Confidence

High

EPSS

0.046

Percentile

92.6%