View previous topic :: View next topic |
Author |
Message |
GLSA Advocate
Joined: 12 May 2004 Posts: 2663
|
Posted: Sun Jan 08, 2012 5:26 am Post subject: [ GLSA 201201-03 ] Chromium, V8: Multiple vulnerabilities |
|
|
Gentoo Linux Security Advisory
Title: Chromium, V8: Multiple vulnerabilities (GLSA 201201-03)
Severity: normal
Exploitable: remote
Date: January 08, 2012
Bug(s): #394587, #397907
ID: 201201-03
Synopsis
Multiple vulnerabilities have been reported in Chromium and V8,
some of which may allow execution of arbitrary code.
Background
Chromium is an open source web browser project. V8 is Google's open
source JavaScript engine.
Affected Packages
Package: www-client/chromium
Vulnerable: < 16.0.912.75
Unaffected: >= 16.0.912.75
Architectures: All supported architectures
Package: dev-lang/v8
Vulnerable: < 3.6.6.11
Unaffected: >= 3.6.6.11
Architectures: All supported architectures
Description
Multiple vulnerabilities have been discovered in Chromium and V8. Please
review the CVE identifiers and release notes referenced below for
details.
Impact
A context-dependent attacker could entice a user to open a specially
crafted web site or JavaScript program using Chromium or V8, possibly
resulting in the execution of arbitrary code with the privileges of the
process, or a Denial of Service condition.
The attacker could also perform URL bar spoofing.
Workaround
There is no known workaround at this time.
Resolution
All Chromium users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=www-client/chromium-16.0.912.75"
| All V8 users should upgrade to the latest version: Code: | # emerge --sync
# emerge --ask --oneshot --verbose ">=dev-lang/v8-3.6.6.11"
|
References
CVE-2011-3903
CVE-2011-3904
CVE-2011-3906
CVE-2011-3907
CVE-2011-3908
CVE-2011-3909
CVE-2011-3910
CVE-2011-3912
CVE-2011-3913
CVE-2011-3914
CVE-2011-3917
CVE-2011-3921
CVE-2011-3922
Release Notes 16.0.912.63
Release Notes 16.0.912.75
|
|
Back to top |
|
|
|
|
You cannot post new topics in this forum You cannot reply to topics in this forum You cannot edit your posts in this forum You cannot delete your posts in this forum You cannot vote in polls in this forum
|
|