Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 544
Alerts This Week
Warning Icon 1 544

Debian: DSA-2741-1 Moderate: Chromium Remote Issues Fixed

debian
Calendar Grey August 25, 2013
Scroller Debian
Uncover multiple vulnerabilities within the Debian Chromium browser leading to essential updates aimed at significantly boosting your security today.
Several vulnerabilities have been discovered in the Chromium web browser

Summary

CVE-2013-2887

The chrome 29 development team found various issues from internal
fuzzing, audits, and other studies.

CVE-2013-2900

Krystian Bigaj discovered a file handling path sanitization issue.

CVE-2013-2901

Alex Chapman discovered an integer overflow issue in ANGLE, the
Almost Native Graphics Layer.

CVE-2013-2902

cloudfuzzer discovered a use-after-free issue in XSLT.

CVE-2013-2903

cloudfuzzer discovered a use-after-free issue in HTMLMediaElement.

CVE-2013-2904

cloudfuzzer discovered a use-after-free issue in XML document
parsing.

CVE-2013-2905

Christian Jaeger discovered an information leak due to insufficient
file permissions.

For the stable distribution (wheezy), these problems have been fixed in
version 29.0.1547.57-1~deb7u1.

For the testing distribution (jessie), these problems will be fixed soon.

For the unstable distribution (sid), these problems have been fixed in
version 29.0.1547.57-1.

We recommend that you upgrade your chromium-browser packages.

Fur...

Read the Full Advisory

Package: chromium-browser
CVE ID: CVE-2013-2887 CVE-2013-2900 CVE-2013-2901 CVE-2013-2902

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.