CVE-2011-2821
Published: 29 August 2011
Double free vulnerability in libxml2, as used in Google Chrome before 13.0.782.215, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted XPath expression.
Notes
Author | Note |
---|---|
mdeslaur | debian says it's http://git.gnome.org/browse/libxml2/commit/?id=fec31bcd452e77c10579467ca87a785b41115de6 |
jdstrand | patch too risky for Ubuntu 8.04 LTS |
Priority
Status
Package | Release | Status |
---|---|---|
chromium-browser Launchpad, Ubuntu, Debian |
hardy |
Does not exist
|
lucid |
Released
(14.0.835.202~r103287-0ubuntu0.10.04.2)
|
|
maverick |
Released
(14.0.835.202~r103287-0ubuntu0.10.10.1)
|
|
natty |
Released
(14.0.835.202~r103287-0ubuntu0.11.04.1)
|
|
oneiric |
Not vulnerable
(13.0.782.215~r97094-0ubuntu1)
|
|
upstream |
Released
(13.0.782.215)
|
|
libxml2 Launchpad, Ubuntu, Debian |
hardy |
Ignored
|
lucid |
Released
(2.7.6.dfsg-1ubuntu1.3)
|
|
maverick |
Released
(2.7.7.dfsg-4ubuntu0.3)
|
|
natty |
Released
(2.7.8.dfsg-2ubuntu0.2)
|
|
oneiric |
Released
(2.7.8.dfsg-4ubuntu0.1)
|
|
upstream |
Released
(2.7.8.dfsg-5)
|
|
Patches: upstream: http://git.gnome.org/browse/libxml2/commit/?id=f5048b3e71fc30ad096970b8df6e7af073bae4cb upstream: http://git.gnome.org/browse/libxml2/commit/?id=fec31bcd452e77c10579467ca87a785b41115de6 |