CVE-2011-2834

Publication date 19 September 2011

Last updated 24 July 2024


Ubuntu priority

Description

Double free vulnerability in libxml2, as used in Google Chrome before 14.0.835.163, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to XPath handling.

Status

Package Ubuntu Release Status
chromium-browser 11.10 oneiric
Fixed 14.0.835.202~r103287-0ubuntu1
11.04 natty
Fixed 14.0.835.202~r103287-0ubuntu0.11.04.1
10.10 maverick
Fixed 14.0.835.202~r103287-0ubuntu0.10.10.1
10.04 LTS lucid
Fixed 14.0.835.202~r103287-0ubuntu0.10.04.2
8.04 LTS hardy Not in release
libxml2 11.10 oneiric
Fixed 2.7.8.dfsg-4ubuntu0.1
11.04 natty
Fixed 2.7.8.dfsg-2ubuntu0.2
10.10 maverick
Fixed 2.7.7.dfsg-4ubuntu0.3
10.04 LTS lucid
Fixed 2.7.6.dfsg-1ubuntu1.3
8.04 LTS hardy
Fixed 2.6.31.dfsg-2ubuntu1.7

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
chromium-browser

References

Related Ubuntu Security Notices (USN)

    • USN-1334-1
    • libxml2 vulnerabilities
    • 19 January 2012

Other references