CVE-2013-7324

Severity CVSS v4.0:
Pending analysis
Type:
CWE-74 Injection
Publication date:
17/02/2020
Last modified:
28/02/2020

Description

Webkit-GTK 2.x (any version with HTML5 audio/video support based on GStreamer) allows remote attackers to trigger unexpectedly high sound volume via malicious javascript. NOTE: this WebKit-GTK behavior complies with existing W3C standards and existing practices for GNOME desktop integration.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:webkitgtk:webkitgtk:*:*:*:*:*:*:*:* 2.0.0 (excluding) 2.26.4 (including)