webkitgtk: use-after-free in the HTMLFormElement::prepareForSubmission() (WSA-2015-0001)
Published Oct 16, 2013
6.8
MEDIUMCVSS 2.0
EPSS 1.65%
Description
Use-after-free vulnerability in the HTMLFormElement::prepareForSubmission function in core/html/HTMLFormElement.cpp in Blink, as used in Google Chrome before 30.0.1599.101, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to submission for FORM elements.
Affected products
No data.
Configuration 1
- 7.0
- 8.0
Configuration 2
Configuration 3
- ≤ 30.0.1599.100
- 30.0.1599.0
- 30.0.1599.1
- 30.0.1599.2
- 30.0.1599.4
- 30.0.1599.5
- 30.0.1599.6
- 30.0.1599.7
- 30.0.1599.8
- 30.0.1599.9
- 30.0.1599.10
- 30.0.1599.11
- 30.0.1599.12
- 30.0.1599.13
- 30.0.1599.14
- 30.0.1599.15
- 30.0.1599.16
- 30.0.1599.17
- 30.0.1599.18
- 30.0.1599.19
- 30.0.1599.20
- 30.0.1599.21
- 30.0.1599.22
- 30.0.1599.23
- 30.0.1599.24
- 30.0.1599.25
- 30.0.1599.26
- 30.0.1599.27
- 30.0.1599.28
- 30.0.1599.29
- 30.0.1599.30
- 30.0.1599.31
- 30.0.1599.32
- 30.0.1599.33
- 30.0.1599.34
- 30.0.1599.35
- 30.0.1599.36
- 30.0.1599.37
- 30.0.1599.38
- 30.0.1599.39
- 30.0.1599.40
- 30.0.1599.41
- 30.0.1599.42
- 30.0.1599.43
- 30.0.1599.44
- 30.0.1599.47
- 30.0.1599.48
- 30.0.1599.49
- 30.0.1599.50
- 30.0.1599.51
- 30.0.1599.52
- 30.0.1599.53
- 30.0.1599.56
- 30.0.1599.57
- 30.0.1599.58
- 30.0.1599.59
- 30.0.1599.60
- 30.0.1599.61
- 30.0.1599.64
- 30.0.1599.65
- 30.0.1599.66
- 30.0.1599.67
- 30.0.1599.68
- 30.0.1599.69
- 30.0.1599.79
- 30.0.1599.80
- 30.0.1599.81
- 30.0.1599.82
- 30.0.1599.84
- 30.0.1599.85
- 30.0.1599.86
- 30.0.1599.87
- 30.0.1599.88
- 30.0.1599.90
No data.
Red Hat Enterprise Linux 6
webkitgtk
Will not fix
Red Hat Enterprise Linux 7
webkitgtk3
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | webkitgtk | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | webkitgtk3 | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
Red Hat Product Security has rated this issue as having Moderate security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
References (19)
- http://archives.neohapsis.com/archives/bugtraq/2014-05/0128.html vendor-advisoryx_refsource_APPLE
- http://archives.neohapsis.com/archives/bugtraq/2014-06/0174.html vendor-advisoryx_refsource_APPLE
- http://archives.neohapsis.com/archives/bugtraq/2014-06/0175.html vendor-advisoryx_refsource_APPLE
- http://googlechromereleases.blogspot.com/2013/10/stable-channel-update_15.html x_refsource_CONFIRM
- http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00025.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00002.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2013-11/msg00077.html vendor-advisoryx_refsource_SUSE
- http://lists.opensuse.org/opensuse-updates/2014-01/msg00042.html vendor-advisoryx_refsource_SUSE
- http://support.apple.com/kb/HT6254 x_refsource_CONFIRM
- http://webkitgtk.org/security/WSA-2015-0001.html
- http://www.debian.org/security/2013/dsa-2785 vendor-advisoryx_refsource_DEBIAN
- https://access.redhat.com/security/cve/CVE-2013-2927 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1186233 Issue Tracking
- https://code.google.com/p/chromium/issues/detail?id=297478 x_refsource_CONFIRM
- https://nvd.nist.gov/vuln/detail/CVE-2013-2927
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19155 vdb-entrysignaturex_refsource_OVAL
- https://src.chromium.org/viewvc/blink?revision=158428&view=revision x_refsource_CONFIRM
- https://support.apple.com/kb/HT6537 x_refsource_CONFIRM
- https://www.cve.org/CVERecord?id=CVE-2013-2927
Change history (0)
No recorded changes yet.