CVE-2013-6664 PUBLISHED CVSS 7.5 HIGH

Use-after-free vulnerability in the FormAssociatedElement::formRemovedFromTree function in core/html/FormAssociatedElement.cpp in Blink, as used in Google Chrome before 33.0.1750.146, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving FORM elements, as demonstrated by use of the speech-recognition feature.

EPSS 0.89% · 75.3th percentile

Risk Scores

CVSS v2.0
7.5
EPSS Score
0.89%
75.3th percentile

Affected Products

VendorProductVersions
n/an/an/a
googlechrome0, 33.0.1750.0, 33.0.1750.1

Timeline

References

Open in Interactive Console →