[Secure-testing-commits] r14620 - data/CVE

Giuseppe Iuculano derevko-guest at alioth.debian.org
Fri May 7 17:40:08 UTC 2010


Author: derevko-guest
Date: 2010-05-07 17:40:07 +0000 (Fri, 07 May 2010)
New Revision: 14620

Modified:
   data/CVE/list
Log:
chromium triage

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2010-05-07 10:06:47 UTC (rev 14619)
+++ data/CVE/list	2010-05-07 17:40:07 UTC (rev 14620)
@@ -8058,7 +8058,8 @@
 CVE-2009-3457 (Cisco ACE XML Gateway (AXG) and ACE Web Application Firewall (WAF) ...)
 	NOT-FOR-US: Cisco ACE XML Gateway (AXG) and ACE Web Application Firewall (WAF)
 CVE-2009-3456 (Google Chrome, possibly 3.0.195.21 and earlier, does not properly ...)
-	- chromium-browser <undetermined>
+	- chromium-browser <not-affected>
+	NOTE: This was caused by a bug in NSS (CVE-2009-2408). chromium-browser uses libnss3
 CVE-2009-3455 (Apple Safari, possibly before 4.0.3, on Mac OS X does not properly ...)
 	NOT-FOR-US: Apple Safari
 CVE-2009-3454
@@ -12699,7 +12700,7 @@
 CVE-2009-2069 (Microsoft Internet Explorer before 8 displays a cached certificate for ...)
 	NOT-FOR-US: Microsoft Internet Explorer
 CVE-2009-2068 (Google Chrome detects http content in https web pages only when the ...)
-	- chromium-browser <undetermined>
+	- chromium-browser 5.0.342.9~r43360-1
 CVE-2009-2067 (Opera detects http content in https web pages only when the top-level ...)
 	NOT-FOR-US: Opera
 CVE-2009-2066 (Apple Safari detects http content in https web pages only when the ...)




More information about the Secure-testing-commits mailing list