CVE-2013-2909
Publication date 2 October 2013
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in Blink, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to inline-block rendering for bidirectional Unicode text in an element isolated from its siblings.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 13.10 saucy |
Fixed 30.0.1599.114-0ubuntu0.13.10.2
|
13.04 raring |
Fixed 30.0.1599.114-0ubuntu0.13.04.2
|
|
12.10 quantal |
Fixed 30.0.1599.114-0ubuntu0.12.10.2
|
|
12.04 LTS precise |
Fixed 30.0.1599.114-0ubuntu0.12.04.3
|
|
10.04 LTS lucid | Ignored end of life |
References
Other references
- https://src.chromium.org/viewvc/blink?revision=156580&view=revision
- https://code.google.com/p/chromium/issues/detail?id=279277
- https://code.google.com/p/chromium/issues/detail?id=265838
- http://googlechromereleases.blogspot.com/2013/10/stable-channel-update.html
- https://www.cve.org/CVERecord?id=CVE-2013-2909