MGASA-2013-0321
Dashboard / Vulnerabilities / MGASA-2013-0321
MGASA-2013-0321
Summary: Updated chromium-browser-stable packages fix multiple vulnerabilities
Details: Updated chromium-browser-stable packages fix security vulnerabilities: Atte Kettunen of OUSPG discover a use-after-free issue in Blink's XML HTTP request implementation (CVE-2013-2925). cloudfuzzer discovered a use-after-free issue in the list indenting implementation (CVE-2013-2926). cloudfuzzer discovered a use-after-free issue in the HTML form submission implementation (CVE-2013-2927). The chrome 30 development team found various issues from internal fuzzing, audits, and other studies (CVE-2013-2928). This updates to the newest version from the Linux stable channel, fixing these and several other issues.
References: https://advisories.mageia.org/MGASA-2013-0321.html, http://googlechromereleases.blogspot.com/2013/10/stable-channel-update_15.html, http://googlechromereleases.blogspot.com/2013/10/stable-channel-update_22.html, http://www.debian.org/security/2013/dsa-2785, https://bugs.mageia.org/show_bug.cgi?id=11554
Affected packages
Package
Name: chromium-browser-stable
Purl: pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-2
Affected ranges
Type: ECOSYSTEM
Events:
