CVE-2013-0888: Google Chrome
Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.
Skia, as used in Google Chrome before 25.0.1364.97 on Windows and Linux, and before 25.0.1364.99 on Mac OS X, allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to a "user gesture check for dangerous file downloads."
Affected products
- Google Chrome: before 25.0.1364.97 (fixed in 25.0.1364.97); before 25.0.1364.99 (fixed in 25.0.1364.99)
- Opensuse Opensuse: version 12.1 only; version 12.2 only
Published 2013-02-23. Last modified 2026-06-16.