*** This bug is a security vulnerability ***

Public security bug reported:

And again a new stable release: 
http://googlechromereleases.blogspot.de/2013/03/stable-channel-update_12.html
Comes with a new Flash: 
https://www.adobe.com/support/security/bulletins/apsb13-09.html

Here are the CVEs:

- These updates resolve an integer overflow vulnerability that could lead to 
code execution (CVE-2013-0646).
- These updates resolve a use-after-free vulnerability that could be exploited 
to execute arbitrary code (CVE-2013-0650).
- These updates resolve a memory corruption vulnerability that could lead to 
code execution (CVE-2013-1371).
- These updates resolve a heap buffer overflow vulnerability that could lead to 
code execution (CVE-2013-1375).

** Affects: chromium-browser (Ubuntu)
     Importance: Undecided
         Status: New

** Information type changed from Private Security to Public Security

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-0646

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-0650

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-1371

** CVE added: http://www.cve.mitre.org/cgi-
bin/cvename.cgi?name=2013-1375

-- 
You received this bug notification because you are a member of Desktop
Packages, which is subscribed to chromium-browser in Ubuntu.
https://bugs.launchpad.net/bugs/1154460

Title:
  new upstream release: 25.0.1364.172

Status in “chromium-browser” package in Ubuntu:
  New

Bug description:
  And again a new stable release: 
http://googlechromereleases.blogspot.de/2013/03/stable-channel-update_12.html
  Comes with a new Flash: 
https://www.adobe.com/support/security/bulletins/apsb13-09.html

  Here are the CVEs:

  - These updates resolve an integer overflow vulnerability that could lead to 
code execution (CVE-2013-0646).
  - These updates resolve a use-after-free vulnerability that could be 
exploited to execute arbitrary code (CVE-2013-0650).
  - These updates resolve a memory corruption vulnerability that could lead to 
code execution (CVE-2013-1371).
  - These updates resolve a heap buffer overflow vulnerability that could lead 
to code execution (CVE-2013-1375).

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1154460/+subscriptions

-- 
Mailing list: https://launchpad.net/~desktop-packages
Post to     : desktop-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~desktop-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to