~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2010-1823

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2010-1823
2
 
PublicDate: 2010-09-24
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1823
5
 
Description:
6
 
 Use-after-free vulnerability in WebKit before r65958, as used in Google
7
 
 Chrome before 6.0.472.59, allows remote attackers to cause a denial of
8
 
 service or possibly have unspecified other impact via vectors that trigger
9
 
 use of document APIs such as document.close during parsing, as demonstrated
10
 
 by a Cascading Style Sheets (CSS) file referencing an invalid SVG font, aka
11
 
 rdar problem 8442098.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
 jdstrand> qt4-x11 unmaintained upstream (see README.webkit for details)
15
 
 jdstrand> webkit is a fork of khtml from kdelibs. kdelibs5 is farther from
16
 
  it, while qt4-x11 attempts to unify khtml and webkit.
17
 
 mdeslaur> webkitkde is a wrapper around qt4-x11's webkit.
18
 
 jdstrand> chromium-browser usually has its own CVEs for its own embedded
19
 
  webkit, but adjust it as needed
20
 
 mdeslaur> debian lists changeset 65692, but I'm not so sure
21
 
Bugs:
22
 
 https://bugs.webkit.org/show_bug.cgi?id=44533
23
 
Priority: low
24
 
Discovered-by:
25
 
Assigned-to:
26
 
 
27
 
Patches_webkit:
28
 
 upstream: http://trac.webkit.org/changeset/65692
29
 
 upstream: http://trac.webkit.org/changeset/65958
30
 
 upstream: http://trac.webkit.org/changeset/65976
31
 
upstream_webkit: released (1.3.3)
32
 
dapper_webkit: DNE
33
 
hardy_webkit: ignored (reached end-of-life)
34
 
jaunty_webkit: ignored (reached end-of-life)
35
 
karmic_webkit: ignored (reached end-of-life)
36
 
lucid_webkit: ignored (reached end-of-life)
37
 
maverick_webkit: ignored (reached end-of-life)
38
 
natty_webkit: not-affected
39
 
oneiric_webkit: not-affected
40
 
precise_webkit: not-affected
41
 
quantal_webkit: not-affected
42
 
raring_webkit: not-affected
43
 
devel_webkit: not-affected
44
 
 
45
 
Patches_qt4-x11:
46
 
upstream_qt4-x11: needs-triage
47
 
dapper_qt4-x11: not-affected (no webkit)
48
 
hardy_qt4-x11: not-affected (no webkit)
49
 
jaunty_qt4-x11: ignored (reached end-of-life)
50
 
karmic_qt4-x11: ignored (reached end-of-life)
51
 
lucid_qt4-x11: ignored (see notes)
52
 
maverick_qt4-x11: not-affected (webkit isn't built)
53
 
natty_qt4-x11: not-affected (webkit isn't built)
54
 
oneiric_qt4-x11: not-affected (webkit isn't built)
55
 
precise_qt4-x11: not-affected (webkit isn't built)
56
 
quantal_qt4-x11: not-affected (webkit isn't built)
57
 
raring_qt4-x11: not-affected (webkit isn't built)
58
 
devel_qt4-x11: not-affected (webkit isn't built)
59
 
 
60
 
Patches_chromium-browser:
61
 
upstream_chromium-browser: needs-triage
62
 
dapper_chromium-browser: DNE
63
 
hardy_chromium-browser: DNE
64
 
jaunty_chromium-browser: DNE
65
 
karmic_chromium-browser: DNE
66
 
lucid_chromium-browser: released (6.0.472.62~r59676-0ubuntu0.10.04.1)
67
 
maverick_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
68
 
natty_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
69
 
oneiric_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
70
 
precise_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
71
 
quantal_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
72
 
raring_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
73
 
devel_chromium-browser: not-affected (6.0.472.63~r59945-0ubuntu1)
74