---
title: "CVE-2013-0885\n    | Ubuntu"
description: Ubuntu is an open source software operating system that runs from the
  desktop, to the cloud, to all your internet connected things.
url: https://ubuntu.com/security/CVE-2013-0885?format=md
keywords: index, follow
---

# CVE-2013-0885

Publication date 23 February 2013

Last updated 24 July 2024

---

Ubuntu priority

**Medium**

[Why this priority?](https://ubuntu.com/security/cves/about#priority )

Toggle side navigation

## Description

Google Chrome before 25.0.1364.97 on Windows and Linux, and before
25.0.1364.99 on Mac OS X, does not properly restrict API privileges during
interaction with the Chrome Web Store, which has unspecified impact and
attack vectors.

## Status

Show unmaintained releases

| Package | Ubuntu Release | Status |
| --- | --- | --- |
| chromium-browser | 12.10 quantal | Fixed 25.0.1364.160-0ubuntu0.12.10.1 |
| 12.04 LTS precise | Fixed 25.0.1364.160-0ubuntu0.12.04.1 |
| 11.10 oneiric | Fixed 25.0.1364.160-0ubuntu0.11.10.1 |
| 10.04 LTS lucid | Fixed 25.0.1364.160-0ubuntu0.10.04.1 |
| 8.04 LTS hardy | Not in release |

---

* [How can I get the fixes?](https://ubuntu.com/security/cves/about#security)
* [What do statuses mean?](https://ubuntu.com/security/cves/about#statuses)

## References

* [MITRE](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0885)
* [NVD](https://nvd.nist.gov/vuln/detail/CVE-2013-0885)
* [Launchpad](https://launchpad.net/bugs/cve/CVE-2013-0885)
* [Debian](https://security-tracker.debian.org/tracker/CVE-2013-0885)

### Other references

* <http://googlechromereleases.blogspot.com/2013/02/stable-channel-update_21.html>
* <https://www.cve.org/CVERecord?id=CVE-2013-0885>
