CVE-2013-6627: Google Chrome

Medium severity, CVSS 5.0. EPSS: 5.3% chance of exploitation in the next 30 days.

net/http/http_stream_parser.cc in Google Chrome before 31.0.1650.48 does not properly process HTTP Informational (aka 1xx) status codes, which allows remote web servers to cause a denial of service (out-of-bounds read) via a crafted response.

Affected products

  • Google Chrome: up to and including 31.0.1650.47; version 31.0.1650.0 only; version 31.0.1650.2 only; version 31.0.1650.3 only; version 31.0.1650.4 only; version 31.0.1650.5 only; …

Published 2013-11-13. Last modified 2026-06-17.