Candidate: CVE-2010-2302 PublicDate: 2010-06-15 18:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-2302 Description: Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with shadow DOM trees, aka rdar problem 8007953. NOTE: this might overlap CVE-2010-1771. Ubuntu-Description: Notes: mdeslaur> webkit is CVE-2010-1771 Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_chromium-browser: upstream_chromium-browser: released (5.0.375.70) dapper_chromium-browser: DNE hardy_chromium-browser: DNE jaunty_chromium-browser: DNE karmic_chromium-browser: DNE lucid_chromium-browser: not-affected devel_chromium-browser: not-affected