Launchpad has imported 7 comments from the remote bug at
https://bugzilla.redhat.com/show_bug.cgi?id=835982.

If you reply to an imported comment from within Launchpad, your comment
will be sent to the remote bug automatically. Read more about
Launchpad's inter-bugtracker facilities at
https://help.launchpad.net/InterBugTracking.

------------------------------------------------------------------------
On 2012-06-27T18:07:40+00:00 Vincent wrote:

The Google Chrome 20 release announcement [1] noted and fixed a flaw in
libxslt:

* [$500] [127417] Medium CVE-2012-2825: Wild read in XSL handling.
Credit to Nicholas Gregoire.

This has been corrected in the Chromium git repository [2]; the upstream
fix is noted as pending.

[1] 
http://googlechromereleases.blogspot.de/2012/06/stable-channel-update_26.html
[2] 
http://git.chromium.org/gitweb/?p=chromium/src.git;a=patch;h=bb7bfb81c158268fb242292b7e0fbd2d3b933d09

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/1

------------------------------------------------------------------------
On 2012-06-27T18:13:44+00:00 Vincent wrote:

Created libxslt tracking bugs for this issue

Affects: fedora-all [bug 835983]

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/2

------------------------------------------------------------------------
On 2012-09-13T17:44:06+00:00 errata-xmlrpc wrote:

This issue has been addressed in following products:

  Red Hat Enterprise Linux 6
  Red Hat Enterprise Linux 5

Via RHSA-2012:1265 https://rhn.redhat.com/errata/RHSA-2012-1265.html

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/5

------------------------------------------------------------------------
On 2012-09-26T09:11:32+00:00 Fedora wrote:

libxslt-1.1.26-10.fc17 has been pushed to the Fedora 17 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/6

------------------------------------------------------------------------
On 2012-09-27T04:26:36+00:00 Fedora wrote:

libxslt-1.1.26-9.fc16 has been pushed to the Fedora 16 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/7

------------------------------------------------------------------------
On 2012-12-09T06:30:59+00:00 Fedora wrote:

libxslt-1.1.27-2.fc18 has been pushed to the Fedora 18 stable
repository.  If problems still persist, please make note of it in this
bug report.

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/8

------------------------------------------------------------------------
On 2013-11-06T16:12:02+00:00 Vincent wrote:

Statement:

(none)

Reply at: https://bugs.launchpad.net/ubuntu/+source/chromium-
browser/+bug/1018204/comments/9


** Changed in: libxml2 (Fedora)
       Status: Unknown => Confirmed

** Changed in: libxml2 (Fedora)
   Importance: Unknown => Medium

** Changed in: libxslt (Fedora)
       Status: Unknown => Fix Released

** Changed in: libxslt (Fedora)
   Importance: Unknown => Medium

-- 
You received this bug notification because you are a member of Ubuntu
Touch seeded packages, which is subscribed to libxml2 in Ubuntu.
https://bugs.launchpad.net/bugs/1018204

Title:
  <chromium-browser-20.0.1132.43: multiple vulnerabilities
  
(CVE-2012-{2807,2815,2817,2818,2819,2820,2821,2823,2824,2825,2826,2829,2830,2831,2834})

Status in chromium-browser package in Ubuntu:
  Fix Released
Status in libxml2 package in Ubuntu:
  Fix Released
Status in libxslt package in Ubuntu:
  Fix Released
Status in libxml2 package in Debian:
  Fix Released
Status in libxslt package in Debian:
  Fix Released
Status in libxml2 package in Fedora:
  Confirmed
Status in libxslt package in Fedora:
  Fix Released

Bug description:
  The Google Chrome team is happy to announce the arrival of Chrome 20
  (20.0.1132.43) to the Stable Channel for Windows, Mac, Linux, and
  Chrome Frame. Release notes in URL [1].

  [1] http://googlechromereleases.blogspot.com/2012/06/stable-channel-
  update_26.html

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/chromium-browser/+bug/1018204/+subscriptions

-- 
Mailing list: https://launchpad.net/~touch-packages
Post to     : touch-packages@lists.launchpad.net
Unsubscribe : https://launchpad.net/~touch-packages
More help   : https://help.launchpad.net/ListHelp

Reply via email to