CVE-2013-2920 - CVE House
Back to Database
Status published Medium CVE-2013-2920

The DoResolveRelativeHost function in url/url_canon_relative.cc in Google Chrome before 30.0.1599.66...

Vulnerability Description

The DoResolveRelativeHost function in url/url_canon_relative.cc in Google Chrome before 30.0.1599.66 allows remote attackers to cause a denial of service (out-of-bounds read) via a relative URL containing a hostname, as demonstrated by a protocol-relative URL beginning with a //www.google.com/ substring.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-2920

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

chrome
Vulnerable Versions:
0, 30.0.1599.0, 30.0.1599.1, 30.0.1599.2, 30.0.1599.4, 30.0.1599.5, 30.0.1599.6, 30.0.1599.7, 30.0.1599.8, 30.0.1599.9, 30.0.1599.10, 30.0.1599.11, 30.0.1599.12, 30.0.1599.13, 30.0.1599.14, 30.0.1599.15, 30.0.1599.16, 30.0.1599.17, 30.0.1599.18, 30.0.1599.19, 30.0.1599.20, 30.0.1599.21, 30.0.1599.22, 30.0.1599.23, 30.0.1599.24, 30.0.1599.25, 30.0.1599.26, 30.0.1599.27, 30.0.1599.28, 30.0.1599.29, 30.0.1599.30, 30.0.1599.31, 30.0.1599.32, 30.0.1599.33, 30.0.1599.34, 30.0.1599.35, 30.0.1599.36, 30.0.1599.37, 30.0.1599.38, 30.0.1599.39, 30.0.1599.40, 30.0.1599.41, 30.0.1599.42, 30.0.1599.43, 30.0.1599.44, 30.0.1599.47, 30.0.1599.48, 30.0.1599.49, 30.0.1599.50, 30.0.1599.51, 30.0.1599.52, 30.0.1599.53, 30.0.1599.56, 30.0.1599.57, 30.0.1599.58, 30.0.1599.59, 30.0.1599.60, 30.0.1599.61, 30.0.1599.64

Timeline

Official Publish: October 2nd, 2013
Last Modified: August 6th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.