Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2013-2908

Published: 2 October 2013

Google Chrome before 30.0.1599.66 uses incorrect function calls to determine the values of NavigationEntry objects, which allows remote attackers to spoof the address bar via vectors involving a response with a 204 (aka No Content) status code.

Priority

Medium

Status

Package Release Status
chromium-browser
Launchpad, Ubuntu, Debian
lucid Ignored
(end of life)
precise
Released (30.0.1599.114-0ubuntu0.12.04.3)
quantal
Released (30.0.1599.114-0ubuntu0.12.10.2)
raring
Released (30.0.1599.114-0ubuntu0.13.04.2)
saucy
Released (30.0.1599.114-0ubuntu0.13.10.2)
upstream
Released (30.0.1599.66)