~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
PublicDateAtUSN: 2010-11-05
Candidate: CVE-2010-4206
PublicDate: 2010-11-05
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-4206
 http://www.ubuntu.com/usn/usn-1195-1
Description:
 Array index error in the FEBlend::apply function in
 WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google
 Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products,
 allows remote attackers to cause a denial of service and possibly execute
 arbitrary code via a crafted SVG document, related to effects in the
 application of filters.
Ubuntu-Description:
Notes:
Bugs:
Priority: low
Discovered-by:
Assigned-to: micahg

Patches_chromium-browser:
upstream_chromium-browser: released (7.0.517.44)
dapper_chromium-browser: DNE
hardy_chromium-browser: DNE
karmic_chromium-browser: DNE
lucid_chromium-browser: released (7.0.517.41~r62167-0ubuntu0.10.04.1)
maverick_chromium-browser: released (7.0.517.41~r62167-0ubuntu0.10.10.1)
natty_chromium-browser: not-affected (7.0.517.44~r64615-0ubuntu1)
devel_chromium-browser: not-affected

Patches_webkit:
upstream_webkit: released (1.2.6)
hardy_webkit: ignored (reached end-of-life)
lucid_webkit: released (1.2.7-0ubuntu0.10.04.1)
maverick_webkit: released (1.2.7-0ubuntu0.10.10.1)
natty_webkit: not-affected
devel_webkit: not-affected