[Git][security-tracker-team/security-tracker][master] chromium is EOL in stretch
Emilio Pozuelo Monfort
pochu at debian.org
Tue Jul 28 13:20:06 BST 2020
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker
Commits:
8b627b5f by Emilio Pozuelo Monfort at 2020-07-28T14:19:42+02:00
chromium is EOL in stretch
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -58737,6 +58737,7 @@ CVE-2019-13681 (Insufficient data validation in downloads in Google Chrome prior
CVE-2019-13680 (Inappropriate implementation in TLS in Google Chrome prior to 77.0.386 ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-13679 (Insufficient policy enforcement in PDFium in Google Chrome prior to 77 ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
@@ -81983,167 +81984,219 @@ CVE-2019-5883 (An Incorrect Access Control issue was discovered in GitLab Commun
NOTE: https://about.gitlab.com/2018/11/28/security-release-gitlab-11-dot-5-dot-1-released/
CVE-2019-5881 (Out of bounds read in SwiftShader in Google Chrome prior to 77.0.3865. ...)
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5880 (Insufficient policy enforcement in Blink in Google Chrome prior to 77. ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5879 (Insufficient policy enforcement in extensions in Google Chrome prior t ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5878 (Use after free in V8 in Google Chrome prior to 77.0.3865.75 allowed a ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5877 (Out of bounds memory access in JavaScript in Google Chrome prior to 77 ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5876 (Use after free in media in Google Chrome on Android prior to 77.0.3865 ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5875 (Insufficient data validation in downloads in Google Chrome prior to 77 ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5874 (Insufficient filtering in URI schemes in Google Chrome on Windows prio ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5873 (Insufficient policy validation in navigation in Google Chrome on iOS p ...)
- chromium <not-affected> (iOS specific issue)
CVE-2019-5872 (Use after free in Mojo in Google Chrome prior to 77.0.3865.75 allowed ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5871 (Heap buffer overflow in Skia in Google Chrome prior to 77.0.3865.75 al ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5870 (Use after free in media in Google Chrome prior to 77.0.3865.75 allowed ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5869 (Use after free in Blink in Google Chrome prior to 76.0.3809.132 allowe ...)
{DSA-4562-1}
- chromium 78.0.3904.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5868 (Use after free in PDFium in Google Chrome prior to 76.0.3809.100 allow ...)
{DSA-4500-1}
- chromium 76.0.3809.100-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5867 (Out of bounds read in JavaScript in Google Chrome prior to 76.0.3809.1 ...)
{DSA-4500-1}
- chromium 76.0.3809.100-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5866 (Out of bounds memory access in JavaScript in Google Chrome prior to 75 ...)
- chromium 76.0.3809.71-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5865 (Insufficient policy enforcement in navigations in Google Chrome prior ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5864 (Insufficient data validation in CORS in Google Chrome prior to 76.0.38 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5863
RESERVED
- chromium <not-affected> (Windows-specific)
CVE-2019-5862 (Insufficient data validation in AppCache in Google Chrome prior to 76. ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5861 (Insufficient data validation in Blink in Google Chrome prior to 76.0.3 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5860 (Use after free in PDFium in Google Chrome prior to 76.0.3809.87 allowe ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5859 (Insufficient filtering in URI schemes in Google Chrome on Windows prio ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5858 (Incorrect security UI in MacOS services integration in Google Chrome o ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5857 (Inappropriate implementation in JavaScript in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5856 (Insufficient policy enforcement in storage in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5855 (Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allo ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5854 (Integer overflow in PDFium in Google Chrome prior to 76.0.3809.87 allo ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5853 (Inappropriate implementation in JavaScript in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5852 (Inappropriate implementation in JavaScript in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5851 (Use after free in WebAudio in Google Chrome prior to 76.0.3809.87 allo ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5850 (Use after free in offline mode in Google Chrome prior to 76.0.3809.87 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5849 (Out of bounds read in Skia in Google Chrome prior to 75.0.3770.80 allo ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
- firefox 69.0-1
NOTE: https://www.mozilla.org/en-US/security/advisories/mfsa2019-25/#CVE-2019-5849
CVE-2019-5848 (Incorrect font handling in autofill in Google Chrome prior to 75.0.377 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5847 (Inappropriate implementation in JavaScript in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 76.0.3809.87-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5846 (Out of bounds access in SwiftShader in Google Chrome prior to 73.0.368 ...)
{DSA-4421-1}
- chromium 73.0.3683.75-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5845 (Out of bounds access in SwiftShader in Google Chrome prior to 73.0.368 ...)
{DSA-4421-1}
- chromium 73.0.3683.75-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5844 (Out of bounds access in SwiftShader in Google Chrome prior to 73.0.368 ...)
{DSA-4421-1}
- chromium 73.0.3683.75-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5843 (Out of bounds memory access in JavaScript in Google Chrome prior to 74 ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5842 (Use after free in Blink in Google Chrome prior to 75.0.3770.90 allowed ...)
{DSA-4500-1}
- chromium 75.0.3770.90-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5841 (Out of bounds memory access in JavaScript in Google Chrome prior to 75 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5840 (Incorrect security UI in popup blocker in Google Chrome on iOS prior t ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5839 (Excessive data validation in URL parser in Google Chrome prior to 75.0 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5838 (Insufficient policy enforcement in extensions API in Google Chrome pri ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5837 (Resource size information leakage in Blink in Google Chrome prior to 7 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5836 (Heap buffer overflow in ANGLE in Google Chrome prior to 75.0.3770.80 a ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5835 (Object lifecycle issue in SwiftShader in Google Chrome prior to 75.0.3 ...)
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5834 (Insufficient data validation in Blink in Google Chrome prior to 75.0.3 ...)
{DSA-4500-1}
- chromium <not-affected> (iOS-specific)
CVE-2019-5833 (Incorrect dialog box scoping in browser in Google Chrome on Android pr ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5832 (Insufficient policy enforcement in XMLHttpRequest in Google Chrome pri ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5831 (Object lifecycle issue in V8 in Google Chrome prior to 75.0.3770.80 al ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5830 (Insufficient policy enforcement in CORS in Google Chrome prior to 75.0 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5829 (Integer overflow in download manager in Google Chrome prior to 75.0.37 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5828 (Object lifecycle issue in ServiceWorker in Google Chrome prior to 75.0 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5827 (Integer overflow in SQLite via WebSQL in Google Chrome prior to 74.0.3 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
- sqlite3 3.27.2-3
[stretch] - sqlite3 <no-dsa> (Minor issue; mainly with inpact in chromium)
[jessie] - sqlite3 <no-dsa> (Minor issue; mainly with inpact in chromium)
@@ -82152,30 +82205,39 @@ CVE-2019-5827 (Integer overflow in SQLite via WebSQL in Google Chrome prior to 7
CVE-2019-5826 (Use after free in IndexedDB in Google Chrome prior to 73.0.3683.86 all ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5825 (Out of bounds write in JavaScript in Google Chrome prior to 73.0.3683. ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5824 (Parameter passing error in media in Google Chrome prior to 74.0.3729.1 ...)
{DSA-4500-1}
- chromium 75.0.3770.80-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5823 (Insufficient policy enforcement in service workers in Google Chrome pr ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5822 (Inappropriate implementation in Blink in Google Chrome prior to 74.0.3 ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5821 (Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 all ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5820 (Integer overflow in PDFium in Google Chrome prior to 74.0.3729.108 all ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5819 (Insufficient data validation in developer tools in Google Chrome on OS ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5818 (Uninitialized data in media in Google Chrome prior to 74.0.3729.108 al ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5817 (Heap buffer overflow in ANGLE in Google Chrome on Windows prior to 74. ...)
- chromium <not-affected> (Windows-specific)
CVE-2019-5816 (Process lifetime issue in Chrome in Google Chrome on Android prior to ...)
@@ -82183,35 +82245,45 @@ CVE-2019-5816 (Process lifetime issue in Chrome in Google Chrome on Android prio
CVE-2019-5815 (Type confusion in xsltNumberFormatGetMultipleLevel prior to libxslt 1. ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5814 (Insufficient policy enforcement in Blink in Google Chrome prior to 74. ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5813 (Use after free in V8 in Google Chrome prior to 74.0.3729.108 allowed a ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5812 (Inadequate security UI in iOS UI in Google Chrome prior to 74.0.3729.1 ...)
- chromium <not-affected> (iOS specific)
CVE-2019-5811 (Incorrect handling of CORS in ServiceWorker in Google Chrome prior to ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5810 (Information leak in autofill in Google Chrome prior to 74.0.3729.108 a ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5809 (Use after free in file chooser in Google Chrome prior to 74.0.3729.108 ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5808 (Use after free in Blink in Google Chrome prior to 74.0.3729.108 allowe ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5807 (Object lifetime issue in V8 in Google Chrome prior to 74.0.3729.108 al ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5806 (Integer overflow in ANGLE in Google Chrome on Windows prior to 74.0.37 ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5805 (Use-after-free in PDFium in Google Chrome prior to 74.0.3729.108 allow ...)
{DSA-4500-1}
- chromium 74.0.3729.108-1
+ [stretch] - chromium <end-of-life> (see DSA 4562)
CVE-2019-5804 (Incorrect command line processing in Chrome in Google Chrome prior to ...)
- chromium <not-affected> (Windows-specific)
CVE-2019-5803 (Insufficient policy enforcement in Content Security Policy in Google C ...)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8b627b5f72d199fd7594e863b295764ec8cda92f
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/8b627b5f72d199fd7594e863b295764ec8cda92f
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20200728/2d3b896c/attachment-0001.html>
More information about the debian-security-tracker-commits
mailing list