CVE-2013-6649

Publication date 28 January 2014

Last updated 24 July 2024


Ubuntu priority

Use-after-free vulnerability in the RenderSVGImage::paint function in core/rendering/svg/RenderSVGImage.cpp in Blink, as used in Google Chrome before 32.0.1700.102, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a zero-size SVG image.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
chromium-browser 13.10 saucy
Fixed 33.0.1750.152-0ubuntu0.13.10.1~pkg984.1
12.10 quantal
Fixed 33.0.1750.152-0ubuntu0.12.10.1~pkg895.1
12.04 LTS precise
Fixed 33.0.1750.152-0ubuntu0.12.04.1~pkg879.1
10.04 LTS lucid Ignored end of life