Denial of Service Vulnerability in Google Chrome's JavaScript Engine
CVE-2013-6640

Currently unrated

Key Information:

Vendor
Google
Status
Vendor
CVE Published:
7 December 2013

Summary

The DehoistArrayIndex function in Google V8 prior to version 3.22.24.7 and Google Chrome prior to version 31.0.1650.63 allows remote attackers to exploit a flaw via JavaScript, which sets a variable to an array element using a manipulated index. This can lead to out-of-bounds reads, potentially resulting in a denial of service.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.