CVE-2013-2846
Last modified
CVE-2013-2846 is a vulnerability of currently unknown severity. Use-after-free vulnerability in the media loader in Google Chrome before 27.0.1453.93 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2013-2840.. EPSS estimates a 1.08% chance of exploitation in the next 30 days.
Description
Use-after-free vulnerability in the media loader in Google Chrome before 27.0.1453.93 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors, a different vulnerability than CVE-2013-2840.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Chrome | <= 27.0.1453.91 | |
| Chrome | 27.0.1453.0 | |
| Chrome | 27.0.1453.1 | |
| Chrome | 27.0.1453.2 | |
| Chrome | 27.0.1453.3 | |
| Chrome | 27.0.1453.4 | |
| Chrome | 27.0.1453.5 | |
| Chrome | 27.0.1453.6 | |
| Chrome | 27.0.1453.7 | |
| Chrome | 27.0.1453.8 | |
| Chrome | 27.0.1453.9 | |
| Chrome | 27.0.1453.10 | |
| Chrome | 27.0.1453.11 | |
| Chrome | 27.0.1453.12 | |
| Chrome | 27.0.1453.13 | |
| Chrome | 27.0.1453.15 | |
| Chrome | 27.0.1453.34 | |
| Chrome | 27.0.1453.35 | |
| Chrome | 27.0.1453.36 | |
| Chrome | 27.0.1453.37 | |
| Chrome | 27.0.1453.38 | |
| Chrome | 27.0.1453.39 | |
| Chrome | 27.0.1453.40 | |
| Chrome | 27.0.1453.41 | |
| Chrome | 27.0.1453.42 | |
| Chrome | 27.0.1453.43 | |
| Chrome | 27.0.1453.44 | |
| Chrome | 27.0.1453.45 | |
| Chrome | 27.0.1453.46 | |
| Chrome | 27.0.1453.47 | |
| Chrome | 27.0.1453.49 | |
| Chrome | 27.0.1453.50 | |
| Chrome | 27.0.1453.51 | |
| Chrome | 27.0.1453.52 | |
| Chrome | 27.0.1453.54 | |
| Chrome | 27.0.1453.55 | |
| Chrome | 27.0.1453.56 | |
| Chrome | 27.0.1453.57 | |
| Chrome | 27.0.1453.58 | |
| Chrome | 27.0.1453.59 | |
| Chrome | 27.0.1453.60 | |
| Chrome | 27.0.1453.61 | |
| Chrome | 27.0.1453.62 | |
| Chrome | 27.0.1453.63 | |
| Chrome | 27.0.1453.64 | |
| Chrome | 27.0.1453.65 | |
| Chrome | 27.0.1453.66 | |
| Chrome | 27.0.1453.67 | |
| Chrome | 27.0.1453.68 | |
| Chrome | 27.0.1453.69 |
Showing 50 of 71 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-2846?
How severe is CVE-2013-2846?
How do I fix CVE-2013-2846?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2013
- CVE-2013-2840Use-after-free vulnerability in the media loader in Google C…
- CVE-2013-2841Use-after-free vulnerability in Google Chrome before 27.0.14…
- CVE-2013-2842Use-after-free vulnerability in Google Chrome before 27.0.14…
- CVE-2013-2843Use-after-free vulnerability in Google Chrome before 27.0.14…
- CVE-2013-2844Use-after-free vulnerability in the Cascading Style Sheets (…
- CVE-2013-2845The Web Audio implementation in Google Chrome before 27.0.14…
- CVE-2013-2847Race condition in the workers implementation in Google Chrom…
- CVE-2013-2848The XSS Auditor in Google Chrome before 27.0.1453.93 might a…
- CVE-2013-2849Multiple cross-site scripting (XSS) vulnerabilities in Googl…
- CVE-2013-2850Heap-based buffer overflow in the iscsi_add_notunderstood_re…
- CVE-2013-2851Format string vulnerability in the register_disk function in…
- CVE-2013-2852Format string vulnerability in the b43_request_firmware func…
Are you affected by CVE-2013-2846?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
