CVE-2013-6640 - CVE House
Back to Database
Status published High CVE-2013-6640

The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8...

Vulnerability Description

The DehoistArrayIndex function in hydrogen-dehoist.cc (aka hydrogen.cc) in Google V8 before 3.22.24.7, as used in Google Chrome before 31.0.1650.63, allows remote attackers to cause a denial of service (out-of-bounds read) via JavaScript code that sets a variable to the value of an array element with a crafted index.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2013-6640

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

chrome, v8
Vulnerable Versions:
0, 31.0.1650.0, 31.0.1650.2, 31.0.1650.3, 31.0.1650.4, 31.0.1650.5, 31.0.1650.6, 31.0.1650.7, 31.0.1650.8, 31.0.1650.9, 31.0.1650.10, 31.0.1650.11, 31.0.1650.12, 31.0.1650.13, 31.0.1650.14, 31.0.1650.15, 31.0.1650.16, 31.0.1650.17, 31.0.1650.18, 31.0.1650.19, 31.0.1650.20, 31.0.1650.22, 31.0.1650.23, 31.0.1650.25, 31.0.1650.26, 31.0.1650.27, 31.0.1650.28, 31.0.1650.29, 31.0.1650.30, 31.0.1650.31, 31.0.1650.32, 31.0.1650.33, 31.0.1650.34, 31.0.1650.35, 31.0.1650.36, 31.0.1650.37, 31.0.1650.38, 31.0.1650.39, 31.0.1650.41, 31.0.1650.42, 31.0.1650.43, 31.0.1650.44, 31.0.1650.45, 31.0.1650.46, 31.0.1650.47, 31.0.1650.48, 31.0.1650.49, 31.0.1650.50, 31.0.1650.51, 31.0.1650.52, 31.0.1650.53, 31.0.1650.54, 31.0.1650.55, 31.0.1650.57, 31.0.1650.58, 31.0.1650.59, 31.0.1650.60, 31.0.1650.61, 3.22.0, 3.22.1, 3.22.2, 3.22.3, 3.22.4, 3.22.5, 3.22.6, 3.22.7, 3.22.8, 3.22.9, 3.22.10, 3.22.11, 3.22.12, 3.22.13, 3.22.14, 3.22.15, 3.22.16, 3.22.17, 3.22.18, 3.22.19, 3.22.20, 3.22.21, 3.22.22, 3.22.23

Timeline

Official Publish: December 7th, 2013
Last Modified: August 6th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.