Candidate: CVE-2011-2785 PublicDate: 2011-08-03 00:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-2785 http://googlechromereleases.blogspot.com/2011/08/stable-channel-update.html Description: The extensions implementation in Google Chrome before 13.0.782.107 does not properly validate the URL for the home page, which allows remote attackers to have an unspecified impact via a crafted extension. Ubuntu-Description: Notes: Bugs: http://code.google.com/p/chromium/issues/detail?id=84402 Priority: medium Discovered-by: Assigned-to: CVSS: Patches_chromium-browser: upstream_chromium-browser: released (13.0.782.107) hardy_chromium-browser: DNE lucid_chromium-browser: released (14.0.835.202~r103287-0ubuntu0.10.04.2) maverick_chromium-browser: released (14.0.835.202~r103287-0ubuntu0.10.10.1) natty_chromium-browser: released (14.0.835.202~r103287-0ubuntu0.11.04.1) oneiric_chromium-browser: not-affected (13.0.782.107~r94237-0ubuntu1) devel_chromium-browser: not-affected (13.0.782.107~r94237-0ubuntu1)