CVE Vulnerabilities

CVE-2013-0910

Improper Authentication

Published: Mar 05, 2013 | Modified: Nov 07, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Google Chrome before 25.0.1364.152 does not properly manage the interaction between the browser process and renderer processes during authorization of the loading of a plug-in, which makes it easier for remote attackers to bypass intended access restrictions via vectors involving a blocked plug-in.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Chrome Google * 25.0.1364.126 (including)
Chrome Google 25.0.1364.0 (including) 25.0.1364.0 (including)
Chrome Google 25.0.1364.1 (including) 25.0.1364.1 (including)
Chrome Google 25.0.1364.2 (including) 25.0.1364.2 (including)
Chrome Google 25.0.1364.3 (including) 25.0.1364.3 (including)
Chrome Google 25.0.1364.5 (including) 25.0.1364.5 (including)
Chrome Google 25.0.1364.7 (including) 25.0.1364.7 (including)
Chrome Google 25.0.1364.8 (including) 25.0.1364.8 (including)
Chrome Google 25.0.1364.9 (including) 25.0.1364.9 (including)
Chrome Google 25.0.1364.10 (including) 25.0.1364.10 (including)
Chrome Google 25.0.1364.11 (including) 25.0.1364.11 (including)
Chrome Google 25.0.1364.12 (including) 25.0.1364.12 (including)
Chrome Google 25.0.1364.13 (including) 25.0.1364.13 (including)
Chrome Google 25.0.1364.14 (including) 25.0.1364.14 (including)
Chrome Google 25.0.1364.15 (including) 25.0.1364.15 (including)
Chrome Google 25.0.1364.16 (including) 25.0.1364.16 (including)
Chrome Google 25.0.1364.17 (including) 25.0.1364.17 (including)
Chrome Google 25.0.1364.18 (including) 25.0.1364.18 (including)
Chrome Google 25.0.1364.19 (including) 25.0.1364.19 (including)
Chrome Google 25.0.1364.20 (including) 25.0.1364.20 (including)
Chrome Google 25.0.1364.21 (including) 25.0.1364.21 (including)
Chrome Google 25.0.1364.22 (including) 25.0.1364.22 (including)
Chrome Google 25.0.1364.23 (including) 25.0.1364.23 (including)
Chrome Google 25.0.1364.24 (including) 25.0.1364.24 (including)
Chrome Google 25.0.1364.25 (including) 25.0.1364.25 (including)
Chrome Google 25.0.1364.26 (including) 25.0.1364.26 (including)
Chrome Google 25.0.1364.27 (including) 25.0.1364.27 (including)
Chrome Google 25.0.1364.28 (including) 25.0.1364.28 (including)
Chrome Google 25.0.1364.29 (including) 25.0.1364.29 (including)
Chrome Google 25.0.1364.30 (including) 25.0.1364.30 (including)
Chrome Google 25.0.1364.31 (including) 25.0.1364.31 (including)
Chrome Google 25.0.1364.32 (including) 25.0.1364.32 (including)
Chrome Google 25.0.1364.33 (including) 25.0.1364.33 (including)
Chrome Google 25.0.1364.34 (including) 25.0.1364.34 (including)
Chrome Google 25.0.1364.35 (including) 25.0.1364.35 (including)
Chrome Google 25.0.1364.36 (including) 25.0.1364.36 (including)
Chrome Google 25.0.1364.37 (including) 25.0.1364.37 (including)
Chrome Google 25.0.1364.38 (including) 25.0.1364.38 (including)
Chrome Google 25.0.1364.39 (including) 25.0.1364.39 (including)
Chrome Google 25.0.1364.40 (including) 25.0.1364.40 (including)
Chrome Google 25.0.1364.41 (including) 25.0.1364.41 (including)
Chrome Google 25.0.1364.42 (including) 25.0.1364.42 (including)
Chrome Google 25.0.1364.43 (including) 25.0.1364.43 (including)
Chrome Google 25.0.1364.44 (including) 25.0.1364.44 (including)
Chrome Google 25.0.1364.45 (including) 25.0.1364.45 (including)
Chrome Google 25.0.1364.46 (including) 25.0.1364.46 (including)
Chrome Google 25.0.1364.47 (including) 25.0.1364.47 (including)
Chrome Google 25.0.1364.48 (including) 25.0.1364.48 (including)
Chrome Google 25.0.1364.49 (including) 25.0.1364.49 (including)
Chrome Google 25.0.1364.50 (including) 25.0.1364.50 (including)
Chrome Google 25.0.1364.51 (including) 25.0.1364.51 (including)
Chrome Google 25.0.1364.52 (including) 25.0.1364.52 (including)
Chrome Google 25.0.1364.53 (including) 25.0.1364.53 (including)
Chrome Google 25.0.1364.54 (including) 25.0.1364.54 (including)
Chrome Google 25.0.1364.55 (including) 25.0.1364.55 (including)
Chrome Google 25.0.1364.56 (including) 25.0.1364.56 (including)
Chrome Google 25.0.1364.57 (including) 25.0.1364.57 (including)
Chrome Google 25.0.1364.58 (including) 25.0.1364.58 (including)
Chrome Google 25.0.1364.61 (including) 25.0.1364.61 (including)
Chrome Google 25.0.1364.62 (including) 25.0.1364.62 (including)
Chrome Google 25.0.1364.63 (including) 25.0.1364.63 (including)
Chrome Google 25.0.1364.65 (including) 25.0.1364.65 (including)
Chrome Google 25.0.1364.66 (including) 25.0.1364.66 (including)
Chrome Google 25.0.1364.67 (including) 25.0.1364.67 (including)
Chrome Google 25.0.1364.68 (including) 25.0.1364.68 (including)
Chrome Google 25.0.1364.70 (including) 25.0.1364.70 (including)
Chrome Google 25.0.1364.72 (including) 25.0.1364.72 (including)
Chrome Google 25.0.1364.73 (including) 25.0.1364.73 (including)
Chrome Google 25.0.1364.74 (including) 25.0.1364.74 (including)
Chrome Google 25.0.1364.75 (including) 25.0.1364.75 (including)
Chrome Google 25.0.1364.76 (including) 25.0.1364.76 (including)
Chrome Google 25.0.1364.77 (including) 25.0.1364.77 (including)
Chrome Google 25.0.1364.78 (including) 25.0.1364.78 (including)
Chrome Google 25.0.1364.79 (including) 25.0.1364.79 (including)
Chrome Google 25.0.1364.80 (including) 25.0.1364.80 (including)
Chrome Google 25.0.1364.81 (including) 25.0.1364.81 (including)
Chrome Google 25.0.1364.82 (including) 25.0.1364.82 (including)
Chrome Google 25.0.1364.84 (including) 25.0.1364.84 (including)
Chrome Google 25.0.1364.85 (including) 25.0.1364.85 (including)
Chrome Google 25.0.1364.86 (including) 25.0.1364.86 (including)
Chrome Google 25.0.1364.87 (including) 25.0.1364.87 (including)
Chrome Google 25.0.1364.88 (including) 25.0.1364.88 (including)
Chrome Google 25.0.1364.89 (including) 25.0.1364.89 (including)
Chrome Google 25.0.1364.90 (including) 25.0.1364.90 (including)
Chrome Google 25.0.1364.91 (including) 25.0.1364.91 (including)
Chrome Google 25.0.1364.92 (including) 25.0.1364.92 (including)
Chrome Google 25.0.1364.93 (including) 25.0.1364.93 (including)
Chrome Google 25.0.1364.95 (including) 25.0.1364.95 (including)
Chrome Google 25.0.1364.98 (including) 25.0.1364.98 (including)
Chrome Google 25.0.1364.99 (including) 25.0.1364.99 (including)
Chrome Google 25.0.1364.108 (including) 25.0.1364.108 (including)
Chrome Google 25.0.1364.110 (including) 25.0.1364.110 (including)
Chrome Google 25.0.1364.112 (including) 25.0.1364.112 (including)
Chrome Google 25.0.1364.113 (including) 25.0.1364.113 (including)
Chrome Google 25.0.1364.114 (including) 25.0.1364.114 (including)
Chrome Google 25.0.1364.115 (including) 25.0.1364.115 (including)
Chrome Google 25.0.1364.116 (including) 25.0.1364.116 (including)
Chrome Google 25.0.1364.117 (including) 25.0.1364.117 (including)
Chrome Google 25.0.1364.118 (including) 25.0.1364.118 (including)
Chrome Google 25.0.1364.119 (including) 25.0.1364.119 (including)
Chrome Google 25.0.1364.120 (including) 25.0.1364.120 (including)
Chrome Google 25.0.1364.121 (including) 25.0.1364.121 (including)
Chrome Google 25.0.1364.122 (including) 25.0.1364.122 (including)
Chrome Google 25.0.1364.123 (including) 25.0.1364.123 (including)
Chrome Google 25.0.1364.124 (including) 25.0.1364.124 (including)
Chrome Google 25.0.1364.125 (including) 25.0.1364.125 (including)
Chromium-browser Ubuntu devel *
Chromium-browser Ubuntu lucid *
Chromium-browser Ubuntu oneiric *
Chromium-browser Ubuntu precise *
Chromium-browser Ubuntu quantal *
Chromium-browser Ubuntu upstream *

Potential Mitigations

References