[Secure-testing-commits] r57397 - data/CVE

Moritz Muehlenhoff jmm at moszumanska.debian.org
Tue Nov 7 09:19:08 UTC 2017


Author: jmm
Date: 2017-11-07 09:19:07 +0000 (Tue, 07 Nov 2017)
New Revision: 57397

Modified:
   data/CVE/list
Log:
more chromium EOLs


Modified: data/CVE/list
===================================================================
--- data/CVE/list	2017-11-07 09:10:21 UTC (rev 57396)
+++ data/CVE/list	2017-11-07 09:19:07 UTC (rev 57397)
@@ -34822,182 +34822,233 @@
 CVE-2017-5099 (Insufficient validation of untrusted input in PPAPI Plugins in Google ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5098 (A use after free in V8 in Google Chrome prior to 60.0.3112.78 for Mac, ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5097 (Insufficient validation of untrusted input in Skia in Google Chrome ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5096 (Insufficient policy enforcement during navigation between different ...)
 	- chromium-browser <not-affected> (Android-specific)
 CVE-2017-5095 (Stack overflow in PDFium in Google Chrome prior to 60.0.3112.78 for ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5094 (Type confusion in extensions JavaScript bindings in Google Chrome prior ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5093 (Inappropriate implementation in modal dialog handling in Blink in ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5092 (Insufficient validation of untrusted input in PPAPI Plugins in Google ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5091 (A use after free in IndexedDB in Google Chrome prior to 60.0.3112.78 ...)
 	{DSA-3926-1}
 	- chromium-browser 60.0.3112.78-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5090 (Insufficient Policy Enforcement in Omnibox in Google Chrome prior to ...)
 	- chromium-browser <not-affected> (Chrome on Mac)
 CVE-2017-5089 (Insufficient Policy Enforcement in Omnibox in Google Chrome prior to ...)
 	{DSA-3926-1}
 	- chromium-browser 59.0.3071.104-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5088 (Insufficient validation of untrusted input in V8 in Google Chrome prior ...)
 	{DSA-3926-1}
 	- chromium-browser 59.0.3071.104-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5087 (A use after free in Blink in Google Chrome prior to 59.0.3071.104 for ...)
 	{DSA-3926-1}
 	- chromium-browser 59.0.3071.104-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5086 (Insufficient Policy Enforcement in Omnibox in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5085 (Inappropriate implementation in Bookmarks in Google Chrome prior to 59 ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5084 (Inappropriate implementation in image-burner in Google Chrome OS prior ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5083 (Inappropriate implementation in Blink in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5082 (Failure to take advantage of available mitigations in credit card ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5081 (Lack of verification of an extension's locale folder in Google Chrome ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5080 (A use after free in credit card autofill in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5079 (Inappropriate implementation in Blink in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5078 (Insufficient validation of untrusted input in Blink's mailto: handling ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5077 (Insufficient validation of untrusted input in Skia in Google Chrome ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5076 (Insufficient Policy Enforcement in Omnibox in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5075 (Inappropriate implementation in CSP reporting in Blink in Google Chrome ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5074 (A use after free in Chrome Apps in Google Chrome prior to 59.0.3071.86 ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5073 (Use after free in print preview in Blink in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5072 (Inappropriate implementation in Omnibox in Google Chrome prior to ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5071 (Insufficient validation of untrusted input in V8 in Google Chrome prior ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	- libv8 <unfixed> (unimportant)
 	NOTE: libv8 not covered by security support
 CVE-2017-5070 (Type confusion in V8 in Google Chrome prior to 59.0.3071.86 for Linux, ...)
 	- chromium-browser 59.0.3071.86-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	- libv8 <unfixed> (unimportant)
 	NOTE: libv8 not covered by security support
 CVE-2017-5069 (Incorrect MIME type of XSS-Protection reports in Blink in Google Chrome ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5068 (Incorrect handling of picture ID in WebRTC in Google Chrome prior to ...)
 	- chromium-browser 58.0.3029.96-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5067 (An insufficient watchdog timer in navigation in Google Chrome prior to ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5066 (Insufficient consistency checks in signature handling in the networking ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5065 (Lack of an appropriate action on page navigation in Blink in Google ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5064 (Incorrect handling of DOM changes in Blink in Google Chrome prior to ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5063 (A numeric overflow in Skia in Google Chrome prior to 58.0.3029.81 for ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5062 (A use after free in Chrome Apps in Google Chrome prior to 58.0.3029.81 ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5061 (A race condition in navigation in Google Chrome prior to 58.0.3029.81 ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5060 (Insufficient Policy Enforcement in Omnibox in Google Chrome prior to ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5059 (Type confusion in Blink in Google Chrome prior to 58.0.3029.81 for ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5058 (A use after free in PrintPreview in Google Chrome prior to 58.0.3029.81 ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5057 (Type confusion in PDFium in Google Chrome prior to 58.0.3029.81 for ...)
 	- chromium-browser 58.0.3029.81-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5056 (A use after free in Blink in Google Chrome prior to 57.0.2987.133 for ...)
 	- chromium-browser 57.0.2987.133-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5055 (A use after free in printing in Google Chrome prior to 57.0.2987.133 ...)
 	- chromium-browser 57.0.2987.133-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5054 (An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for ...)
 	- chromium-browser 57.0.2987.133-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	- libv8 <unfixed> (unimportant)
 	NOTE: libv8 not covered by security support
 CVE-2017-5053 (An out-of-bounds read in V8 in Google Chrome prior to 57.0.2987.133 for ...)
 	- chromium-browser 57.0.2987.133-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	- libv8 <unfixed> (unimportant)
 	NOTE: libv8 not covered by security support
 CVE-2017-5052 (An incorrect assumption about block structure in Blink in Google Chrome ...)
 	- chromium-browser 57.0.2987.133-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 CVE-2017-5051 (An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 ...)
 	- chromium-browser 57.0.2987.98-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	NOTE: https://codereview.chromium.org/2654913002
 CVE-2017-5050 (An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 ...)
 	- chromium-browser 57.0.2987.98-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	NOTE: https://codereview.chromium.org/2654913002
 CVE-2017-5049 (An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 ...)
 	- chromium-browser 57.0.2987.98-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	NOTE: https://codereview.chromium.org/2654913002
 CVE-2017-5048 (An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 ...)
 	- chromium-browser 57.0.2987.98-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	NOTE: https://codereview.chromium.org/2654913002
 CVE-2017-5047 (An integer overflow in FFmpeg in Google Chrome prior to 57.0.2987.98 ...)
 	- chromium-browser 57.0.2987.98-1
+	[jessie] - chromium-browser <end-of-life> (End of life, see DSA 4020)
 	[wheezy] - chromium-browser <end-of-life> (Not supported in Wheezy)
 	NOTE: https://codereview.chromium.org/2654913002
 CVE-2017-5046 (V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux ...)




More information about the Secure-testing-commits mailing list