CVE-2013-2879

Publication date 10 July 2013

Last updated 24 July 2024


Ubuntu priority

Google Chrome before 28.0.1500.71 does not properly determine the circumstances in which a renderer process can be considered a trusted process for sign-in and subsequent sync operations, which makes it easier for remote attackers to conduct phishing attacks via a crafted web site.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
chromium-browser 13.04 raring
Fixed 28.0.1500.71-0ubuntu1.13.04.1
12.10 quantal
Fixed 28.0.1500.71-0ubuntu1.12.10.1
12.04 LTS precise
Fixed 28.0.1500.71-0ubuntu1.12.04.1
10.04 LTS lucid Ignored end of life