CVE-2013-2885
Publication date 31 July 2013
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to not properly considering focus during the processing of JavaScript events in the presence of a multiple-fields input type.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 13.10 saucy |
Not affected
|
13.04 raring |
Fixed 30.0.1599.114-0ubuntu0.13.04.2
|
|
12.10 quantal |
Fixed 30.0.1599.114-0ubuntu0.12.10.2
|
|
12.04 LTS precise |
Fixed 30.0.1599.114-0ubuntu0.12.04.3
|
|
10.04 LTS lucid | Ignored end of life |
References
Other references
- https://code.google.com/p/chromium/issues/detail?id=257353
- https://code.google.com/p/chromium/issues/detail?id=249640
- https://chromium.googlesource.com/chromium/blink/+/dd13a061c49579e40f381b2dc9409fb0a920ec19^
- https://chromium.googlesource.com/chromium/blink/+/7a7ea525c912f6e59aa3e915e7f2cf140c077a49
- http://googlechromereleases.blogspot.com/2013/07/stable-channel-update_30.html
- https://www.cve.org/CVERecord?id=CVE-2013-2885