CVE-2013-6668

Google Chrome <33.0.1750.146 V8 - Impact Unknown

Title source: manual
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2013-6668. PoCs published by sdneon.

AI-analyzed exploit summary This PoC demonstrates a DoS vulnerability in Node.js v0.10.31 (CVE-2013-6668) by repeatedly executing a SQL stored procedure via the 'tedious' module, causing Node.js to crash when more than 52 rows are returned. The issue is linked to a v8 backport patch and affects specific configurations of Node.js and MS SQL Server.

Description

Multiple unspecified vulnerabilities in Google V8 before 3.24.35.10, as used in Google Chrome before 33.0.1750.146, allow attackers to cause a denial of service or possibly have other impact via unknown vectors.

Exploits (1)

nomisec WORKING POC
by sdneon · poc
https://github.com/sdneon/CveTest

This PoC demonstrates a DoS vulnerability in Node.js v0.10.31 (CVE-2013-6668) by repeatedly executing a SQL stored procedure via the 'tedious' module, causing Node.js to crash when more than 52 rows are returned. The issue is linked to a v8 backport patch and affects specific configurations of Node.js and MS SQL Server.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Moderate
Reliability
Reliable
Target: Node.js v0.10.31 with tedious module v1.4.3 or earlier
Auth required
Prerequisites: Windows 7 64-bit · MS SQL Server 2005 · Node.js v0.10.31 x64 · tedious module v1.4.3 or earlier · Access to a SQL database with a stored procedure returning >52 rows
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (13)

Core 13
Core References
Issue Tracking, Vendor Advisory x_refsource_confirm
https://code.google.com/p/chromium/issues/detail?id=344186
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/65930
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2014/dsa-2883
Third Party Advisory x_refsource_confirm
http://advisories.mageia.org/MGASA-2014-0516.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/61184
Third Party Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=swg21683389
Vendor Advisory x_refsource_confirm
https://code.google.com/p/v8/source/detail?r=19475
Issue Tracking, Vendor Advisory x_refsource_confirm
https://code.google.com/p/chromium/issues/detail?id=343964
Issue Tracking, Vendor Advisory x_refsource_confirm
https://code.google.com/p/chromium/issues/detail?id=347909
Vendor Advisory x_refsource_confirm
https://code.google.com/p/v8/source/detail?r=19553
Vendor Advisory x_refsource_confirm
https://code.google.com/p/v8/source/detail?r=19599
Third Party Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDVSA-2015:142

Scores

EPSS 0.1282
EPSS Percentile 94.1%

Details

Status published
Products (50)
debian/debian_linux 7.0
debian/debian_linux 8.0
google/chrome 33.0.1750.0
google/chrome 33.0.1750.1
google/chrome 33.0.1750.2
google/chrome 33.0.1750.3
google/chrome 33.0.1750.4
google/chrome 33.0.1750.5
google/chrome 33.0.1750.6
google/chrome 33.0.1750.7
... and 40 more
Published Mar 05, 2014
Tracked Since Feb 18, 2026