UBUNTU-CVE-2016-2052
Dashboard / Vulnerabilities / UBUNTU-CVE-2016-2052
UBUNTU-CVE-2016-2052
Summary:
Details: Multiple unspecified vulnerabilities in HarfBuzz before 1.0.6, as used in Google Chrome before 48.0.2564.82, allow attackers to cause a denial of service or possibly have other impact via crafted data, as demonstrated by a buffer over-read resulting from an inverted length check in hb-ot-font.cc, a different issue than CVE-2015-8947.
References: https://ubuntu.com/security/CVE-2016-2052, https://code.google.com/p/chromium/issues/detail?id=579625, https://code.google.com/p/chromium/issues/detail?id=544270, http://googlechromereleases.blogspot.com/2016/01/stable-channel-update_20.html, https://ubuntu.com/security/notices/USN-2877-1, https://ubuntu.com/security/notices/USN-3067-1, https://www.cve.org/CVERecord?id=CVE-2016-2052
Affected packages
Package
Name: chromium-browser
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=trusty
Affected ranges
Type: ECOSYSTEM
Events:
