[Git][security-tracker-team/security-tracker][master] additional chromium issue

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Aug 2 13:07:46 BST 2023



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fce64eb1 by Moritz Mühlenhoff at 2023-08-02T14:07:06+02:00
additional chromium issue

- - - - -


2 changed files:

- data/CVE/list
- data/DSA/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1,11 +1,13 @@
 CVE-2023-4016 (Under some circumstances, this weakness allows a user who has access t ...)
 	TODO: check
 CVE-2023-3739 (Insufficient validation of untrusted input in Chromad in Google Chrome ...)
-	TODO: check
+	{DSA-5456-1}
+	- chromium 115.0.5790.98-1
+	[buster] - chromium <end-of-life> (see DSA 5046)
 CVE-2023-3731 (Use after free in Diagnostics in Google Chrome on ChromeOS prior to 11 ...)
-	TODO: check
+	NOT-FOR-US: Google Chrome on ChromeOS
 CVE-2023-3729 (Use after free in Splitscreen in Google Chrome on ChromeOS prior to 11 ...)
-	TODO: check
+	NOT-FOR-US: Google Chrome on ChromeOS
 CVE-2023-3494 (The fwctl driver implements a state machine which is executed when a b ...)
 	TODO: check
 CVE-2023-3107 (A set of carefully crafted ipv6 packets can trigger an integer overflo ...)


=====================================
data/DSA/list
=====================================
@@ -23,7 +23,7 @@
 	[bullseye] - webkit2gtk 2.40.3-2~deb11u2
 	[bookworm] - webkit2gtk 2.40.3-2~deb12u2
 [20 Jul 2023] DSA-5456-1 chromium - security update
-	{CVE-2023-3727 CVE-2023-3728 CVE-2023-3730 CVE-2023-3732 CVE-2023-3733 CVE-2023-3734 CVE-2023-3735 CVE-2023-3736 CVE-2023-3737 CVE-2023-3738 CVE-2023-3740}
+	{CVE-2023-3727 CVE-2023-3728 CVE-2023-3730 CVE-2023-3732 CVE-2023-3733 CVE-2023-3734 CVE-2023-3735 CVE-2023-3736 CVE-2023-3737 CVE-2023-3738 CVE-2023-3740 CVE-2023-3739}
 	[bullseye] - chromium 115.0.5790.98-1~deb11u1
 	[bookworm] - chromium 115.0.5790.98-1~deb12u1
 [17 Jul 2023] DSA-5455-1 iperf3 - security update



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fce64eb1f105c33285b5dfaa9acb8edf754eb2ba

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fce64eb1f105c33285b5dfaa9acb8edf754eb2ba
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20230802/33fa0f91/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list