[Secure-testing-commits] r46113 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri Nov 11 05:49:06 UTC 2016


Author: carnil
Date: 2016-11-11 05:49:05 +0000 (Fri, 11 Nov 2016)
New Revision: 46113

Modified:
   data/CVE/list
Log:
Add four new CVEs for chromium-browser

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-11-11 05:27:26 UTC (rev 46112)
+++ data/CVE/list	2016-11-11 05:49:05 UTC (rev 46113)
@@ -13314,14 +13314,27 @@
 	RESERVED
 CVE-2016-5203
 	RESERVED
-CVE-2016-5202
+CVE-2016-5202 [various fixes from internal audits]
 	RESERVED
-CVE-2016-5201
+	- chromium-browser <unfixed>
+	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
+CVE-2016-5201 [info leak in extensions]
 	RESERVED
-CVE-2016-5200
+	- chromium-browser <unfixed>
+	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
+CVE-2016-5200 [out of bounds memory access in v8]
 	RESERVED
-CVE-2016-5199
+	- chromium-browser <unfixed>
+	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
+	- libv8 <unfixed> (unimportant)
+	NOTE: libv8 not covered by security support
+CVE-2016-5199 [heap corruption in ffmpeg]
 	RESERVED
+	- chromium-browser <unfixed>
+	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
+	- ffmpeg <unfixed>
+	NOTE: https://chromium-review.googlesource.com/383956
+	NOTE: https://github.com/FFmpeg/FFmpeg/commit/347cb14b7cba7560e53f4434b419b9d8800253e7 (n3.3-dev)
 CVE-2016-5198
 	RESERVED
 	- chromium-browser <unfixed>




More information about the Secure-testing-commits mailing list