Candidate: CVE-2011-3049 PublicDate: 2012-03-23 10:55:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3049 http://googlechromereleases.blogspot.com/2012/03/stable-channel-update_21.html http://code.google.com/p/chromium/issues/detail?id=108648 Description: Google Chrome before 17.0.963.83 does not properly restrict the extension web request API, which allows remote attackers to cause a denial of service (disrupted system requests) via a crafted extension. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_chromium-browser: upstream_chromium-browser: released (17.0.963.83) hardy_chromium-browser: DNE lucid_chromium-browser: released (18.0.1025.151~r130497-0ubuntu0.10.04.1) maverick_chromium-browser: pending natty_chromium-browser: released (18.0.1025.151~r130497-0ubuntu0.11.04.1) oneiric_chromium-browser: released (18.0.1025.168~r134367-0ubuntu0.11.10.1) precise_chromium-browser: released (17.0.963.83~r127885-0ubuntu1) devel_chromium-browser: released (17.0.963.83~r127885-0ubuntu1)