First published: Thu Jan 16 2014(Updated: )
Use-after-free vulnerability in the Web Workers implementation in Google Chrome before 32.0.1700.76 on Windows and before 32.0.1700.77 on Mac OS X and Linux allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the shutting down of a worker process.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome (Trace Event) | <32.0.1700.77 | |
Apple iOS and macOS | ||
Linux Kernel | ||
SUSE Linux | =12.3 | |
SUSE Linux | =13.1 | |
Debian | =7.0 | |
Debian | =8.0 | |
Google Chrome (Trace Event) | <32.0.1700.76 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-6646 is rated as a high severity vulnerability due to the potential for denial of service and possible security impacts when exploited.
To resolve CVE-2013-6646, users should update Google Chrome to version 32.0.1700.77 or later.
CVE-2013-6646 affects Google Chrome versions prior to 32.0.1700.77 on Windows and 32.0.1700.76 on other platforms.
CVE-2013-6646 is a use-after-free vulnerability in the Web Workers implementation of Google Chrome.
Exploitation of CVE-2013-6646 could lead to denial of service and potentially other unspecified impacts.