First published: Sat Feb 23 2013(Updated: )
Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, does not properly load Native Client (aka NaCl) code, which has unspecified impact and attack vectors.
Credit: cve-coordination@google.com
Affected Software | Affected Version | How to fix |
---|---|---|
openSUSE | =12.1 | |
openSUSE | =12.2 | |
Google Chrome | <25.0.1364.97 | |
Linux Kernel | ||
Microsoft Windows | ||
Google Chrome | <25.0.1364.99 | |
macOS Yosemite |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-0884 has a medium severity rating due to its potential impact on the security of Native Client code execution.
To fix CVE-2013-0884, update Google Chrome to version 25.0.1364.97 or later on Windows and Linux, and to version 25.0.1364.99 or later on Mac OS X.
CVE-2013-0884 affects Google Chrome versions prior to 25.0.1364.97 on Windows and Linux, and prior to 25.0.1364.99 on macOS.
CVE-2013-0884 has unspecified impacts that may allow attackers to exploit NaCl code loading vulnerabilities.
No specific workaround exists for CVE-2013-0884; updating to the latest version of Chrome is the recommended action.