CVE-2011-3919

Publication date 7 January 2012

Last updated 24 July 2024


Ubuntu priority

Heap-based buffer overflow in libxml2, as used in Google Chrome before 16.0.912.75, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

Status

Package Ubuntu Release Status
chromium-browser 11.10 oneiric
Fixed 17.0.963.56~r121963-0ubuntu0.11.10.1
11.04 natty
Fixed 17.0.963.56~r121963-0ubuntu0.11.04.1
10.10 maverick
Fixed 17.0.963.56~r121963-0ubuntu0.10.10.1
10.04 LTS lucid
Fixed 17.0.963.56~r121963-0ubuntu0.10.04.1
8.04 LTS hardy Not in release
libxml2 11.10 oneiric
Fixed 2.7.8.dfsg-4ubuntu0.1
11.04 natty
Fixed 2.7.8.dfsg-2ubuntu0.2
10.10 maverick
Fixed 2.7.7.dfsg-4ubuntu0.3
10.04 LTS lucid
Fixed 2.7.6.dfsg-1ubuntu1.3
8.04 LTS hardy
Fixed 2.6.31.dfsg-2ubuntu1.7

Patch details

For informational purposes only. We recommend not to cherry-pick updates. How can I get the fixes?

Package Patch details
libxml2

References

Related Ubuntu Security Notices (USN)

    • USN-1334-1
    • libxml2 vulnerabilities
    • 19 January 2012

Other references