CVE-2013-0921
Summary
| CVE | CVE-2013-0921 |
|---|---|
| State | PUBLISHED |
| Assigner | Chrome |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2013-03-28 12:18:52 UTC |
| Updated | 2026-04-29 01:13:23 UTC |
| Description | The Isolated Sites feature in Google Chrome before 26.0.1410.43 does not properly enforce the use of separate processes, which makes it easier for remote attackers to bypass intended access restrictions via a crafted web site. |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
PartialIntegrity
PartialAvailability
PartialAV:N/AC:M/Au:N/C:P/I:P/A:P
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Chrome | 26.0.1410.0 | All | All | All | |
| Application | Chrome | 26.0.1410.1 | All | All | All | |
| Application | Chrome | 26.0.1410.10 | All | All | All | |
| Application | Chrome | 26.0.1410.11 | All | All | All | |
| Application | Chrome | 26.0.1410.12 | All | All | All | |
| Application | Chrome | 26.0.1410.14 | All | All | All | |
| Application | Chrome | 26.0.1410.15 | All | All | All | |
| Application | Chrome | 26.0.1410.16 | All | All | All | |
| Application | Chrome | 26.0.1410.17 | All | All | All | |
| Application | Chrome | 26.0.1410.18 | All | All | All | |
| Application | Chrome | 26.0.1410.19 | All | All | All | |
| Application | Chrome | 26.0.1410.2 | All | All | All | |
| Application | Chrome | 26.0.1410.20 | All | All | All | |
| Application | Chrome | 26.0.1410.21 | All | All | All | |
| Application | Chrome | 26.0.1410.22 | All | All | All | |
| Application | Chrome | 26.0.1410.23 | All | All | All | |
| Application | Chrome | 26.0.1410.24 | All | All | All | |
| Application | Chrome | 26.0.1410.25 | All | All | All | |
| Application | Chrome | 26.0.1410.26 | All | All | All | |
| Application | Chrome | 26.0.1410.27 | All | All | All | |
| Application | Chrome | 26.0.1410.28 | All | All | All | |
| Application | Chrome | 26.0.1410.29 | All | All | All | |
| Application | Chrome | 26.0.1410.3 | All | All | All | |
| Application | Chrome | 26.0.1410.30 | All | All | All | |
| Application | Chrome | 26.0.1410.31 | All | All | All | |
| Application | Chrome | 26.0.1410.32 | All | All | All | |
| Application | Chrome | 26.0.1410.33 | All | All | All | |
| Application | Chrome | 26.0.1410.34 | All | All | All | |
| Application | Chrome | 26.0.1410.35 | All | All | All | |
| Application | Chrome | 26.0.1410.36 | All | All | All | |
| Application | Chrome | 26.0.1410.37 | All | All | All | |
| Application | Chrome | 26.0.1410.38 | All | All | All | |
| Application | Chrome | 26.0.1410.39 | All | All | All | |
| Application | Chrome | 26.0.1410.4 | All | All | All | |
| Application | Chrome | 26.0.1410.40 | All | All | All | |
| Application | Chrome | 26.0.1410.41 | All | All | All | |
| Application | Chrome | 26.0.1410.5 | All | All | All | |
| Application | Chrome | 26.0.1410.6 | All | All | All | |
| Application | Chrome | 26.0.1410.7 | All | All | All | |
| Application | Chrome | 26.0.1410.8 | All | All | All | |
| Application | Chrome | 26.0.1410.9 | All | All | All | |
| Application | Chrome | All | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Sign in - Google Accounts | af854a3a-2127-422b-91ae-364da2661108 | code.google.com | |
| Chrome Releases: Stable Channel Update | af854a3a-2127-422b-91ae-364da2661108 | googlechromereleases.blogspot.com | |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.