[Git][security-tracker-team/security-tracker][master] Add tracking for icu in CVE-2021-30535 as confirmed

Salvatore Bonaccorso (@carnil) carnil at debian.org
Wed Jun 30 08:21:07 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
a3b371d1 by Salvatore Bonaccorso at 2021-06-30T09:20:28+02:00
Add tracking for icu in CVE-2021-30535 as confirmed

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -12409,7 +12409,10 @@ CVE-2021-30536 (Out of bounds read in V8 in Google Chrome prior to 91.0.4472.77
 CVE-2021-30535 (Double free in ICU in Google Chrome prior to 91.0.4472.77 allowed a re ...)
 	- chromium <unfixed> (bug #990079)
 	[stretch] - chromium <end-of-life> (see DSA 4562)
-	TODO: check src:icu
+	- icu <unfixed>
+	NOTE: https://bugs.chromium.org/p/chromium/issues/detail?id=1194899 (restricted)
+	NOTE: Bugfix: https://github.com/unicode-org/icu/pull/1698/commits/e450fa50fc242282551f56b941dc93b9a8a0bcbb
+	NOTE: Backports: https://chromium-review.googlesource.com/c/chromium/deps/icu/+/2842864
 CVE-2021-30534 (Insufficient policy enforcement in iFrameSandbox in Google Chrome prio ...)
 	- chromium <unfixed> (bug #990079)
 	[stretch] - chromium <end-of-life> (see DSA 4562)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a3b371d156002803fc0c08d9cbb2f97e93b863f8

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/a3b371d156002803fc0c08d9cbb2f97e93b863f8
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210630/ab825826/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list