Unrated severityNVD Advisory· Published Oct 2, 2013· Updated Apr 29, 2026
CVE-2013-2906
CVE-2013-2906
Description
Multiple race conditions in the Web Audio implementation in Blink, as used in Google Chrome before 30.0.1599.66, allow remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to threading in core/html/HTMLMediaElement.cpp, core/platform/audio/AudioDSPKernelProcessor.cpp, core/platform/audio/HRTFElevation.cpp, and modules/webaudio/ConvolverNode.cpp.
Affected products
59cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*+ 58 more
- cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*range: <=30.0.1599.65
- cpe:2.3:a:google:chrome:30.0.1599.0:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.1:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.2:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.4:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.5:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.6:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.7:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.8:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.9:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.10:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.11:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.12:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.13:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.14:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.15:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.16:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.17:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.18:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.19:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.20:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.21:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.22:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.23:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.24:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.25:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.26:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.27:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.28:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.29:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.30:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.31:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.32:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.33:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.34:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.35:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.36:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.37:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.38:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.39:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.40:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.41:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.42:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.43:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.44:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.47:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.48:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.49:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.50:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.51:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.52:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.53:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.56:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.57:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.58:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.59:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.60:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.61:*:*:*:*:*:*:*
- cpe:2.3:a:google:chrome:30.0.1599.64:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
16- googlechromereleases.blogspot.com/2013/10/stable-channel-update.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2013-10/msg00002.htmlnvd
- lists.opensuse.org/opensuse-security-announce/2013-12/msg00002.htmlnvd
- lists.opensuse.org/opensuse-updates/2014-01/msg00042.htmlnvd
- www.debian.org/security/2013/dsa-2785nvd
- code.google.com/p/chromium/issues/detailnvd
- code.google.com/p/chromium/issues/detailnvd
- code.google.com/p/chromium/issues/detailnvd
- code.google.com/p/chromium/issues/detailnvd
- code.google.com/p/chromium/issues/detailnvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A19013nvd
- src.chromium.org/viewvc/blinknvd
- src.chromium.org/viewvc/blinknvd
- src.chromium.org/viewvc/blinknvd
- src.chromium.org/viewvc/blinknvd
- src.chromium.org/viewvc/blinknvd
News mentions
0No linked articles in our index yet.