Endpoint Vulnerability

Security Vulnerability CVE-2013-6649 for Google Chrome

Description

Use-after-free vulnerability in the RenderSVGImage::paint function in core/rendering/svg/RenderSVGImage.cpp in Blink, as used in Google Chrome before 32.0.1700.102, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving a zero-size SVG image.

Affected Products

Google Chrome

References

CVE-2013-6649,