CVE-2011-3046
Publication date 8 March 2012
Last updated 24 July 2024
Ubuntu priority
The extension subsystem in Google Chrome before 17.0.963.78 does not properly handle history navigation, which allows remote attackers to execute arbitrary code by leveraging a “Universal XSS (UXSS)” issue.
Status
Package | Ubuntu Release | Status |
---|---|---|
chromium-browser | 13.04 raring |
Not affected
|
12.10 quantal |
Fixed 3.0.1271.97-0ubuntu0.12.10.1
|
|
12.04 LTS precise |
Fixed 3.0.1271.97-0ubuntu0.12.04.1
|
|
11.10 oneiric |
Fixed 3.0.1271.97-0ubuntu0.11.10.1
|
|
11.04 natty |
Fixed 17.0.963.78~r125577
|
|
10.10 maverick |
Fixed 17.0.963.78~r125577
|
|
10.04 LTS lucid |
Fixed 3.0.1271.97-0ubuntu0.10.04.1
|
|
8.04 LTS hardy | Not in release | |
webkit | 13.04 raring |
Not affected
|
12.10 quantal |
Not affected
|
|
12.04 LTS precise |
Fixed 1.8.1-0ubuntu0.12.04.1
|
|
11.10 oneiric | Ignored end of life | |
11.04 natty | Ignored end of life | |
10.04 LTS lucid | Ignored end of life | |
8.04 LTS hardy | Ignored end of life |
References
Related Ubuntu Security Notices (USN)
- USN-1524-1
- WebKit vulnerabilities
- 8 August 2012