CVE-2013-6654: Google Chrome
High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.
The SVGAnimateElement::calculateAnimatedValue function in core/svg/SVGAnimateElement.cpp in Blink, as used in Google Chrome before 33.0.1750.117, does not properly handle unexpected data types, which allows remote attackers to cause a denial of service (incorrect cast) or possibly have unspecified other impact via unknown vectors.
Affected products
- Google Chrome: up to and including 33.0.1750.116; version 33.0.1750.0 only; version 33.0.1750.1 only; version 33.0.1750.2 only; version 33.0.1750.3 only; version 33.0.1750.4 only; …
Published 2014-02-24. Last modified 2026-06-17.