CVE-2010-0644

Publication date 18 February 2010

Last updated 24 July 2024


Ubuntu priority

Google Chrome before 4.0.249.89, when a SOCKS 5 proxy server is configured, sends DNS queries directly, which allows remote DNS servers to obtain potentially sensitive information about the identity of a client user via request logging, as demonstrated by a proxy server that was configured for the purpose of anonymity.

Read the notes from the security team

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
chromium-browser 10.04 LTS lucid
Not affected
9.10 karmic Not in release
9.04 jaunty Not in release
8.10 intrepid Not in release
8.04 LTS hardy Not in release
6.06 LTS dapper Not in release

Notes


mdeslaur

fixed in r34903 and r34928