The Google Chrome 20 release announcement [1] noted and fixed a flaw in libxslt:
* [$500] [127417] Medium CVE-2012-2825: Wild read in XSL handling. Credit to Nicholas Gregoire.
This has been corrected in the Chromium git repository [2]; the upstream fix is noted as pending.
[1] http://googlechromereleases.blogspot.de/2012/06/stable-channel-update_26.html [2] http://git.chromium.org/gitweb/?p=chromium/src.git;a=patch;h=bb7bfb81c158268fb242292b7e0fbd2d3b933d09
The Google Chrome 20 release announcement [1] noted and fixed a flaw in libxslt:
* [$500] [127417] Medium CVE-2012-2825: Wild read in XSL handling. Credit to Nicholas Gregoire.
This has been corrected in the Chromium git repository [2]; the upstream fix is noted as pending.
[1] http:// googlechromerel eases.blogspot. de/2012/ 06/stable- channel- update_ 26.html git.chromium. org/gitweb/ ?p=chromium/ src.git; a=patch; h=bb7bfb81c1582 68fb242292b7e0f bd2d3b933d09
[2] http://