MGASA-2013-0324

Source
https://advisories.mageia.org/MGASA-2013-0324.html
Import Source
https://advisories.mageia.org/MGASA-2013-0324.json
JSON Data
https://api.test.osv.dev/v1/vulns/MGASA-2013-0324
Related
  • CVE-2013-2931
  • CVE-2013-6621
  • CVE-2013-6622
  • CVE-2013-6623
  • CVE-2013-6624
  • CVE-2013-6625
  • CVE-2013-6626
  • CVE-2013-6627
  • CVE-2013-6628
  • CVE-2013-6629
  • CVE-2013-6630
  • CVE-2013-6631
Published
2013-11-13T19:09:45Z
Modified
2013-11-13T19:19:31Z
Summary
Updated chromium-browser-stable packages fix multiple vulnerabilities
Details

Updated chromium-browser-stable packages fix security vulnerabilities:

Various fixes from internal audits, fuzzing and other initiatives (CVE-2013-2931).

Use after free related to speech input elements (CVE-2013-6621).

Use after free related to media elements (CVE-2013-6622).

Out of bounds read in SVG (CVE-2013-6623).

Use after free related to 'id' attribute strings (CVE-2013-6624).

Use after free in DOM ranges (CVE-2013-6625).

Address bar spoofing related to interstitial warnings (CVE-2013-6626).

Out of bounds read in HTTP parsing (CVE-2013-6627).

Issue with certificates not being checked during TLS renegotiation (CVE-2013-6628).

libjpeg 6b and libjpeg-turbo will use uninitialized memory when decoding images with missing SOS data for the luminance component (Y) in presence of valid chroma data (Cr, Cb) (CVE-2013-6629).

libjpeg-turbo will use uninitialized memory when handling Huffman tables (CVE-2013-6630).

Use after free in libjingle (CVE-2013-6631).

References
Credits

Affected packages

Mageia:2 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?distro=mageia-2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
31.0.1650.48-1.mga2

Ecosystem specific

{
    "section": "core"
}

Mageia:3 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
31.0.1650.48-1.mga3.tainted

Ecosystem specific

{
    "section": "tainted"
}

Mageia:3 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
31.0.1650.48-1.mga3

Ecosystem specific

{
    "section": "core"
}