CVE-2011-1190

Priority
Medium
Description
The Web Workers implementation in Google Chrome before 10.0.648.127 allows
remote attackers to bypass the Same Origin Policy via unspecified vectors,
related to an "error message leak."
References
Notes
 jdstrand> qt4-x11 unmaintained upstream (see README.webkit for details)
Package
Upstream:needs-triage
Ubuntu 12.04 LTS (Precise Pangolin):needs-triage
Ubuntu 14.04 LTS (Trusty Tahr):DNE
Ubuntu 15.04 (Vivid Vervet):DNE
Ubuntu Touch 15.04:DNE
Ubuntu Core 15.04:DNE
Ubuntu 15.10 (Wily Werewolf):DNE
Ubuntu 16.04 (Xenial Xerus):DNE
Patches:
Upstream:http://trac.webkit.org/changeset/77563
Package
Upstream:needs-triage
Ubuntu 12.04 LTS (Precise Pangolin):needs-triage
Ubuntu 14.04 LTS (Trusty Tahr):needs-triage
Ubuntu 15.04 (Vivid Vervet):ignored (reached end-of-life)
Ubuntu Touch 15.04:DNE
Ubuntu Core 15.04:DNE
Ubuntu 15.10 (Wily Werewolf):needs-triage
Ubuntu 16.04 (Xenial Xerus):needs-triage
Package
Upstream:needs-triage
Ubuntu 12.04 LTS (Precise Pangolin):DNE
Ubuntu 14.04 LTS (Trusty Tahr):needs-triage
Ubuntu 15.04 (Vivid Vervet):ignored (reached end-of-life)
Ubuntu Touch 15.04:DNE
Ubuntu Core 15.04:DNE
Ubuntu 15.10 (Wily Werewolf):needs-triage
Ubuntu 16.04 (Xenial Xerus):needs-triage
Package
Upstream:released (10.0.648.127)
Ubuntu 12.04 LTS (Precise Pangolin):released (3.0.1271.97-0ubuntu0.12.04.1)
Ubuntu 14.04 LTS (Trusty Tahr):released (10.0.648.127~r76697-0ubuntu1)
Ubuntu 15.04 (Vivid Vervet):released (10.0.648.127~r76697-0ubuntu1)
Ubuntu Touch 15.04:DNE
Ubuntu Core 15.04:DNE
Ubuntu 15.10 (Wily Werewolf):released (10.0.648.127~r76697-0ubuntu1)
Ubuntu 16.04 (Xenial Xerus):released (10.0.648.127~r76697-0ubuntu1)
Package
Upstream:needs-triage
Ubuntu 12.04 LTS (Precise Pangolin):not-affected (webkit isn't built)
Ubuntu 14.04 LTS (Trusty Tahr):not-affected (webkit isn't built)
Ubuntu 15.04 (Vivid Vervet):not-affected (webkit isn't built)
Ubuntu Touch 15.04:DNE
Ubuntu Core 15.04:DNE
Ubuntu 15.10 (Wily Werewolf):not-affected (webkit isn't built)
Ubuntu 16.04 (Xenial Xerus):not-affected (webkit isn't built)
More Information

Valid XHTML 1.0 Strict

Updated: 2016-02-04 14:15:17 UTC (commit 10579)