Candidate: CVE-2013-0925 PublicDate: 2013-03-28 12:18:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0925 https://code.google.com/p/chromium/issues/detail?id=168442 http://googlechromereleases.blogspot.com/2013/03/stable-channel-update_26.html Description: Google Chrome before 26.0.1410.43 does not ensure that an extension has the tabs (aka APIPermission::kTab) permission before providing a URL to this extension, which has unspecified impact and remote attack vectors. Ubuntu-Description: Notes: Bugs: https://bugs.launchpad.net/bugs/1161296 Priority: medium Discovered-by: Michael Vrable Assigned-to: chad CVSS: Patches_chromium-browser: upstream_chromium-browser: released (26.0.1410.43) hardy_chromium-browser: DNE lucid_chromium-browser: ignored (reached end-of-life) oneiric_chromium-browser: ignored (reached end-of-life) precise_chromium-browser: released (28.0.1500.52-0ubuntu1.12.04.2) quantal_chromium-browser: released (28.0.1500.52-0ubuntu1.12.10.3) raring_chromium-browser: released (28.0.1500.52-0ubuntu1.13.04.3) devel_chromium-browser: released (28.0.1500.52-0ubuntu2)