12.0.742.91 -> 12.0.742.112
Bug #803107 reported by
Fabien Tassin
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
chromium-browser (Ubuntu) |
Fix Released
|
High
|
Fabien Tassin | ||
Lucid |
Fix Released
|
High
|
Micah Gersten | ||
Maverick |
Fix Released
|
High
|
Micah Gersten | ||
Natty |
Fix Released
|
High
|
Micah Gersten | ||
Oneiric |
Fix Released
|
High
|
Fabien Tassin |
Bug Description
Another security upgrade, needed in oneiric, natty, maverick and lucid
Related branches
Changed in chromium-browser (Ubuntu Oneiric): | |
status: | New → Fix Committed |
importance: | Undecided → High |
Changed in chromium-browser (Ubuntu Natty): | |
importance: | Undecided → High |
Changed in chromium-browser (Ubuntu Maverick): | |
importance: | Undecided → High |
Changed in chromium-browser (Ubuntu Lucid): | |
importance: | Undecided → High |
Changed in chromium-browser (Ubuntu Oneiric): | |
assignee: | nobody → Fabien Tassin (fta) |
Changed in chromium-browser (Ubuntu Natty): | |
status: | New → Confirmed |
Changed in chromium-browser (Ubuntu Maverick): | |
status: | New → Confirmed |
Changed in chromium-browser (Ubuntu Lucid): | |
status: | New → Confirmed |
security vulnerability: | no → yes |
Changed in chromium-browser (Ubuntu Lucid): | |
assignee: | nobody → Micah Gersten (micahg) |
Changed in chromium-browser (Ubuntu Maverick): | |
assignee: | nobody → Micah Gersten (micahg) |
Changed in chromium-browser (Ubuntu Natty): | |
assignee: | nobody → Micah Gersten (micahg) |
Changed in chromium-browser (Ubuntu Lucid): | |
status: | Confirmed → In Progress |
Changed in chromium-browser (Ubuntu Maverick): | |
status: | Confirmed → In Progress |
Changed in chromium-browser (Ubuntu Natty): | |
status: | Confirmed → In Progress |
tags: | added: security-verification verification-needed |
To post a comment you must log in.
This bug was fixed in the package chromium-browser - 12.0.742. 112~r90304- 0ubuntu1
--------------- 112~r90304- 0ubuntu1) oneiric; urgency=high
chromium-browser (12.0.742.
* New Minor upstream release from the Stable Channel (LP: #803107) patches/ grit_language_ variants. patch patches/ series WHITELISTED_ NEW_LANGS knob to make it easier to patches/ html5-codecs- fix.patch patches/ series codecs- ffmpeg- nonfree, renamed in M5 to -extra codereview. chromium. org/6883221 from M13 presumably patches/ cups_cleanup_ cr6883221. patch patches/ series
This release fixes the following security issues:
+ WebKit issues:
- [84355] High, CVE-2011-2346: Use-after-free in SVG font handling.
Credit to miaubiz.
- [85003] High, CVE-2011-2347: Memory corruption in CSS parsing. Credit
to miaubiz.
- [85102] High, CVE-2011-2350: Lifetime and re-entrancy issues in the
HTML parser. Credit to miaubiz.
- [85211] High, CVE-2011-2351: Use-after-free with SVG use element.
Credit to miaubiz.
- [85418] High, CVE-2011-2349: Use-after-free in text selection. Credit
to miaubiz.
+ Chromium issues:
- [77493] Medium, CVE-2011-2345: Out-of-bounds read in NPAPI string
handling. Credit to Philippe Arteau.
- [85177] High, CVE-2011-2348: Bad bounds check in v8. Credit to Aki
Helin of OUSPG.
Packaging changes:
* Add Valencian (ca@valencia) to the list of supported langs for the
lang-packs
- update debian/rules
- update debian/control
* Add support for language variants in Grit, backported from trunk.
This is needed to support lang-codes like ca@valencia
- add debian/
- update debian/
* Add a WANT_ONLY_
sync translations of new langs between all the branches
- update debian/rules
* Properly stop the keep-alive when the build fails
- update debian/rules
* Fix the HTML5 <video> tag regression in Oneiric by properly linking
libvpx so it's not being dropped from libffmpegsumo.so (LP: #795171)
- add debian/
- update debian/
* Drop the -inspector package, its content has been merged into the main deb
in M12 and the deb remained empty since.
Also drop chromium-
- update debian/control
- update debian/rules
* Backport of http://
fixing the ARM ftbfs from the last update, and set use_cups=0 on armel
- add debian/
- update debian/
- update debian/rules
-- Fabien Tassin <email address hidden> Tue, 28 Jun 2011 07:17:52 +0200