~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
PublicDateAtUSN: 2015-05-20
Candidate: CVE-2015-1262
PublicDate: 2015-05-20
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1262
 https://src.chromium.org/viewvc/blink?revision=194541&view=revision
 https://code.google.com/p/chromium/issues/detail?id=476647
 http://googlechromereleases.blogspot.com/2015/05/stable-channel-update_19.html
 http://www.ubuntu.com/usn/usn-2610-1
Description:
 platform/fonts/shaping/HarfBuzzShaper.cpp in Blink, as used in Google
 Chrome before 43.0.2357.65, does not initialize a certain width field,
 which allows remote attackers to cause a denial of service or possibly have
 unspecified other impact via crafted Unicode text.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:

Patches_chromium-browser:
upstream_chromium-browser: released (43.0.2357.65)
precise_chromium-browser: ignored
trusty_chromium-browser: released (43.0.2357.81-0ubuntu0.14.04.1.1089)
utopic_chromium-browser: released (43.0.2357.81-0ubuntu0.14.10.1.1131)
vivid_chromium-browser: released (43.0.2357.81-0ubuntu0.15.04.1.1170)
wily_chromium-browser: released (43.0.2357.81-0ubuntu1.1179)
devel_chromium-browser: released (43.0.2357.81-0ubuntu1.1179)

Patches_oxide-qt:
upstream_oxide-qt: released (1.7.8)
precise_oxide-qt: DNE
trusty_oxide-qt: released (1.7.8-0ubuntu0.14.04.1)
utopic_oxide-qt: released (1.7.8-0ubuntu0.14.10.1)
vivid_oxide-qt: released (1.7.8-0ubuntu0.15.04.1)
wily_oxide-qt: released (1.7.8-0ubuntu1)
devel_oxide-qt: released (1.7.8-0ubuntu1)