Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

CVE-2013-6659

CVE information

Published

10 years ago

Last Modified

9 years ago

CVSSv2.0 Severity

Medium

Impact Analysis

Description

The SSLClientSocketNSS::Core::OwnAuthCertHandler function in net/socket/ssl_client_socket_nss.cc in Google Chrome before 33.0.1750.117 does not prevent changes to server X.509 certificates during renegotiations, which allows remote SSL servers to trigger use of a new certificate chain, inconsistent with the user's expectations, by initiating a TLS renegotiation..

CVSSv2.0 Score

Severity
Medium
Base Score
6.4/10
Exploit Score
10/10
Access Vector
Network
Access Complexity
Low
Authentication Required
None
Impact Score
4.9/10
Confidentiality Impact
Partial
Availability Impact
None
Integrity Impact
Partial

Products Affected

CPE Affected Vulnerable Excluding Edit
cpe:2.3:a:google:chrome:33.0.1750.1:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.89:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.51:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.44:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.39:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.73:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.70:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.22:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.41:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.66:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.12:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.92:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.16:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.65:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.46:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.85:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.79:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.106:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.52:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.38:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.88:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.93:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.110:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.11:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.104:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.61:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.0:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.34:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.31:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.36:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.23:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.112:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.47:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.9:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.28:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.69:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.55:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.109:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.10:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.81:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.49:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.57:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.71:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.45:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.115:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.108:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.5:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.40:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.29:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.76:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.13:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.58:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.75:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.63:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.6:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.20:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.59:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.3:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.25:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.82:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.64:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.113:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.50:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.60:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.26:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.19:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.18:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.8:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.42:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.7:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.21:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.80:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.68:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.90:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.77:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.111:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.35:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.43:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.27:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.4:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.48:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.15:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.56:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.24:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.30:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.67:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.107:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.2:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.14:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.74:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.62:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.91:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.83:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.53:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.37:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:google:chrome:33.0.1750.54:*:*:*:*:*:*:*
  Yes
- -