Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×
Several security issues were fixed in Oxide.
Software Description:
- oxide-qt: Web browser engine for Qt (QML plugin)
Details:
An unspecified security issue was discovered in Blink. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit this to bypass same-origin restrictions.
(CVE-2016-1673)
An issue was discovered with Document reattachment in Blink in some
circumstances. If a user were tricked in to opening a specially crafted
website, an attacker could potentially exploit this to bypass same-origin
restrictions. (CVE-2016-1675)
A type confusion bug was discovered in V8. If a user were tricked in to
opening a specially crafted website, an attacker could potentially exploit
this to obtain sensitive information. (CVE-2016-1677)
A heap overflow was discovered in V8. If a user were tricked in to opening
a specially crafted website, an attacker could potentially exploit this to
cause a denial of service (a...
The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: liboxideqtcore0 1.15.7-0ubuntu0.16.04.1 Ubuntu 15.10: liboxideqtcore0 1.15.7-0ubuntu0.15.10.1 Ubuntu 14.04 LTS: liboxideqtcore0 1.15.7-0ubuntu0.14.04.1 In general, a standard system update will make all the necessary changes.
https://ubuntu.com/security/notices/USN-2992-1
CVE-2016-1673, CVE-2016-1675, CVE-2016-1677, CVE-2016-1678,
CVE-2016-1679, CVE-2016-1680, CVE-2016-1682, CVE-2016-1683,
CVE-2016-1684, CVE-2016-1688, CVE-2016-1689, CVE-2016-1691,
CVE-2016-1692, CVE-2016-1695, CVE-2016-1697, CVE-2016-1699,
CVE-2016-1702, CVE-2016-1703
Get the latest Linux and open source security news straight to your inbox.