Common Vulnerabilities and Exposures assigned an identifier CVE-2011-3092 to the following vulnerability: Name: CVE-2011-3092 URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-3092 Assigned: 20110809 Reference: http://code.google.com/p/chromium/issues/detail?id=122337 Reference: http://googlechromereleases.blogspot.com/2012/05/stable-channel-update.html The regex implementation in Google V8, as used in Google Chrome before 19.0.1084.46, allows remote attackers to cause a denial of service (invalid write operation) or possibly have unspecified other impact via unknown vectors. NOTE: I can only assume this affects the version of v8 as provided by Fedora, but the upstream bug is not public so can't verify.
Created v8 tracking bugs for this issue Affects: fedora-all [bug 822006]
This has been fixed in Fedora: * Fri Jul 06 2012 Tom Callaway <spot@xxx> 1:3.10.8-1 - update to 3.10.8 (chromium 20)