MGASA-2013-0249

Source
https://advisories.mageia.org/MGASA-2013-0249.html
Import Source
https://advisories.mageia.org/MGASA-2013-0249.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2013-0249
Upstream
  • CVE-2013-2881
  • CVE-2013-2882
  • CVE-2013-2883
  • CVE-2013-2884
  • CVE-2013-2885
  • CVE-2013-2886
Published
2013-08-17T08:39:42Z
Modified
2026-04-16T06:25:27.585844052Z
Summary
Updated chromium-browser-stable packages fix security vulnerabilities
Details

Updated chromium-browser-stable packages fix security vulnerabilities:

Karthik Bhargavan discovered a way to bypass the Same Origin Policy in frame handling (CVE-2013-2881).

Cloudfuzzer discovered a type confusion issue in the V8 javascript library (CVE-2013-2882).

Cloudfuzzer discovered a use-after-free issue in MutationObserver (CVE-2013-2883).

Ivan Fratric of the Google Security Team discovered a use-after-free issue in the DOM implementation (CVE-2013-2884).

Ivan Fratric of the Google Security Team discovered a use-after-free issue in input handling (CVE-2013-2885).

The chrome 28 development team found various issues from internal fuzzing, audits, and other studies (CVE-2013-2886).

This update provides version 28.0.1500.95, which fixes these issues.

Additionally, Google Sync should now work (mga#9851), and playing of media files with certain codecs, such as mp3, should now work with the tainted build (mga#10828) in Mageia 3.

References
Credits

Affected packages

Mageia:2 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-2

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
28.0.1500.95-1.mga2

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2013-0249.json"

Mageia:3 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
28.0.1500.95-1.mga3

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2013-0249.json"

Mageia:3 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-3

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
28.0.1500.95-1.mga3.tainted

Ecosystem specific

{
    "section": "tainted"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2013-0249.json"