Exploitation Summary
EIP tracks 2 public exploits for CVE-2013-2842. PoCs published by Google Security Research, 173210.
AI-analyzed exploit summary This exploit leverages a use-after-free vulnerability in Chromium (CVE-2013-2842) by manipulating DOM objects and event listeners to trigger a memory corruption, leading to a crash (EXC_BAD_ACCESS). The PoC includes heap spraying to control memory layout and demonstrates the vulnerability in Chromium 28.0.1461.0.
Description
Use-after-free vulnerability in Google Chrome before 27.0.1453.93 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of widgets.
Exploits (2)
This exploit leverages a use-after-free vulnerability in Chromium (CVE-2013-2842) by manipulating DOM objects and event listeners to trigger a memory corruption, leading to a crash (EXC_BAD_ACCESS). The PoC includes heap spraying to control memory layout and demonstrates the vulnerability in Chromium 28.0.1461.0.
This PoC generates an HTML file exploiting a vulnerability in the Nintendo 3DS browser (CVE-2013-2842) to achieve remote code execution via a heap overflow. It embeds shellcode for specific firmware versions and triggers the exploit through JavaScript manipulation.