Please update to 18.0.1025.168
Bug #992352 reported by
Micah Gersten
This bug affects 4 people
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
chromium-browser (Ubuntu) |
Fix Released
|
Medium
|
Unassigned | ||
Lucid |
Fix Released
|
Medium
|
Micah Gersten | ||
Natty |
Won't Fix
|
Medium
|
Micah Gersten | ||
Oneiric |
Fix Released
|
Medium
|
Micah Gersten | ||
Precise |
Fix Released
|
Medium
|
Micah Gersten | ||
Quantal |
Fix Released
|
Medium
|
Unassigned |
Bug Description
[106413] High CVE-2011-3078: Use after free in floats handling. Credit to Google Chrome Security Team (Marty Barbella) and independent later discovery by miaubiz.
[117110] High CVE-2012-1521: Use after free in xml parser. Credit to Google Chrome Security Team (SkyLined) and independent later discovery by wushi of team509 reported through iDefense VCP (V-874rcfpq7z).
[117627] Medium CVE-2011-3079: IPC validation failure. Credit to PinkiePie.
[121726] Medium CVE-2011-3080: Race condition in sandbox IPC. Credit to Willem Pinckaers of Matasano.
[121899] High CVE-2011-3081: Use after free in floats handling. Credit to miaubiz.
Related branches
Changed in chromium-browser (Ubuntu Natty): | |
status: | Fix Committed → Won't Fix |
To post a comment you must log in.
Quantal is currently blocked on bug 992212