CVE-2013-2877
Last modified
CVE-2013-2877 is a vulnerability of currently unknown severity. parser.c in libxml2 before 2.9.0, as used in Google Chrome before 28.0.1500.71 and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a document that ends abruptly, related to the lack of certain checks for the XML_PARSER_EOF state.. EPSS estimates a 4.73% chance of exploitation in the next 30 days.
Description
parser.c in libxml2 before 2.9.0, as used in Google Chrome before 28.0.1500.71 and other products, allows remote attackers to cause a denial of service (out-of-bounds read) via a document that ends abruptly, related to the lack of certain checks for the XML_PARSER_EOF state.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Chrome | <= 28.0.1500.70 | — | |
| Chrome | 28.0.1500.0 | — | |
| Chrome | 28.0.1500.2 | — | |
| Chrome | 28.0.1500.3 | — | |
| Chrome | 28.0.1500.4 | — | |
| Chrome | 28.0.1500.5 | — | |
| Chrome | 28.0.1500.6 | — | |
| Chrome | 28.0.1500.8 | — | |
| Chrome | 28.0.1500.9 | — | |
| Chrome | 28.0.1500.10 | — | |
| Chrome | 28.0.1500.11 | — | |
| Chrome | 28.0.1500.12 | — | |
| Chrome | 28.0.1500.13 | — | |
| Chrome | 28.0.1500.14 | — | |
| Chrome | 28.0.1500.15 | — | |
| Chrome | 28.0.1500.16 | — | |
| Chrome | 28.0.1500.17 | — | |
| Chrome | 28.0.1500.18 | — | |
| Chrome | 28.0.1500.19 | — | |
| Chrome | 28.0.1500.20 | — | |
| Chrome | 28.0.1500.21 | — | |
| Chrome | 28.0.1500.22 | — | |
| Chrome | 28.0.1500.23 | — | |
| Chrome | 28.0.1500.24 | — | |
| Chrome | 28.0.1500.25 | — | |
| Chrome | 28.0.1500.26 | — | |
| Chrome | 28.0.1500.27 | — | |
| Chrome | 28.0.1500.28 | — | |
| Chrome | 28.0.1500.29 | — | |
| Chrome | 28.0.1500.31 | — | |
| Chrome | 28.0.1500.32 | — | |
| Chrome | 28.0.1500.33 | — | |
| Chrome | 28.0.1500.34 | — | |
| Chrome | 28.0.1500.35 | — | |
| Chrome | 28.0.1500.36 | — | |
| Chrome | 28.0.1500.37 | — | |
| Chrome | 28.0.1500.38 | — | |
| Chrome | 28.0.1500.39 | — | |
| Chrome | 28.0.1500.40 | — | |
| Chrome | 28.0.1500.41 | — | |
| Chrome | 28.0.1500.42 | — | |
| Chrome | 28.0.1500.43 | — | |
| Chrome | 28.0.1500.44 | — | |
| Chrome | 28.0.1500.45 | — | |
| Chrome | 28.0.1500.46 | — | |
| Chrome | 28.0.1500.47 | — | |
| Chrome | 28.0.1500.48 | — | |
| Chrome | 28.0.1500.49 | — | |
| Chrome | 28.0.1500.50 | — | |
| Chrome | 28.0.1500.51 | — |
Showing 50 of 188 affected configurations. See NVD for the full list.
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2013-2877?
How severe is CVE-2013-2877?
How do I fix CVE-2013-2877?
Are you affected by CVE-2013-2877?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
