Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2013-0828

Quick assessment

Affected
n/a n/a
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

Google Chrome是美国谷歌(Google)公司开发的一款Web浏览器。 Google Chrome 24.0.1312.52之前版本中的PDF功能中存在漏洞,该漏洞源于处理根结构树期间没有正确执行一系列未指定变量。通过特制的文档,远程攻击者利用该漏洞导致拒绝服务或产生未知影响。

AI Predicted 4.3 Difficulty: Moderate EPSS 2.02% · P79
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2013-0828

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
The PDF functionality in Google Chrome before 24.0.1312.52 does not properly perform a cast of an unspecified variable during processing of the root of the structure tree, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
Source: CVE Program / CVE List V5
CVSS Information
N/A
Source: CVE Program / CVE List V5
Vulnerability Type
N/A
Source: CVE Program / CVE List V5
Vulnerability Title
Google Chrome 处理类型转换漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Google Chrome是美国谷歌(Google)公司开发的一款Web浏览器。 Google Chrome 24.0.1312.52之前版本中的PDF功能中存在漏洞,该漏洞源于处理根结构树期间没有正确执行一系列未指定变量。通过特制的文档,远程攻击者利用该漏洞导致拒绝服务或产生未知影响。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
- n/a n/a -

II. Public POCs for CVE-2013-0828

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2013-0828

登录查看更多情报信息。

Vendor Advisories for CVE-2013-0828 (2)

Other References for CVE-2013-0828 (1)

Same Patch Batch · n/a · 2013-01-15 · 24 CVEs total

CVE-2012-5156 Google Chrome PDF字段释放后使用漏洞
CVE-2013-0838 Google Chrome 共享内存段弱权限漏洞
CVE-2013-0837 Google Chrome 扩展标签处理拒绝服务漏洞
CVE-2013-0836 Google Chrome v8垃圾回收拒绝服务漏洞
CVE-2013-0835 Google Chrome 地理位置处理拒绝服务漏洞
CVE-2013-0834 Google Chrome 字形处理越界读取漏洞
CVE-2013-0833 Google Chrome 打印越界读取漏洞
CVE-2013-0832 Google Chrome 打印释放后使用漏洞
CVE-2013-0831 Google Chrome 扩展处理路径遍历漏洞
CVE-2013-0830 Google Chrome IPC NUL结束符缺失漏洞
CVE-2013-0829 Google Chrome 文件访问漏洞
CVE-2012-5157 Google Chrome PDF图像处理越界读取漏洞
CVE-2012-5145 Google Chrome 多个安全漏洞
CVE-2012-5155 Google Chrome 沙盒限制绕过漏洞
CVE-2012-5154 Google Chrome 共享内存分配整数溢出漏洞
CVE-2012-5153 Google Chrome 栈越界访问漏洞
CVE-2012-5152 Google Chrome 越界读取漏洞
CVE-2012-5151 Google Chrome PDF JavaScript整数溢出漏洞
CVE-2012-5150 Google Chrome 音频查询释放后使用漏洞
CVE-2012-5149 Google Chrome 音频IPC处理整数溢出漏洞

Showing top 20 of 24 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2013-0828

No comments yet


Leave a comment