Vulnerabilities > CVE-2013-2833 - Resource Management Errors vulnerability in Google Chrome OS

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN

Summary

Use-after-free vulnerability in the O3D plug-in in Google Chrome OS before 26.0.1410.57 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to improper management of ownership relationships involving Elements and DrawElements.

Vulnerable Configurations

Part Description Count
OS
Google
248

Common Weakness Enumeration (CWE)

Seebug

bulletinFamilyexploit
descriptionBUGTRAQ ID: 59063 CVE(CAN) ID: CVE-2013-2832,CVE-2013-2833,CVE-2013-2834,CVE-2013-2835 Google Chrome OS是一款基于Linux的开源操作系统。 Google Chrome OS 26.0.1410.57之前版本存在多个安全漏洞:1.03D插件的缓冲区内存在未初始化的内存数据;2.03D插件内存在释放后重用漏洞;3.03D及Google Talk插件被来源锁定绕过。 0 Google Chrome <= 26.0.1410.57 厂商补丁: Google ------ 目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载: http://www.google.com
idSSV:60748
last seen2017-11-19
modified2013-04-17
published2013-04-17
reporterRoot
titleGoogle Chrome OS 26.0.1410.57之前版本多个安全漏洞

The Hacker News

idTHN:4FFA5865E945584FA90D2B2A54AD0D0B
last seen2017-01-08
modified2013-04-30
published2013-04-30
reporterMohit Kumar
sourcehttp://thehackernews.com/2013/04/google-pays-31336-bounty-to-hacker-for.html
titleGoogle pays $31,336 bounty to hacker for reporting critical vulnerabilities in Chrome