[Git][security-tracker-team/security-tracker][master] Annotate fixing commit for CVE-2023-6704
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Mon May 19 20:19:34 BST 2025
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
1a07df79 by Salvatore Bonaccorso at 2025-05-19T21:18:55+02:00
Annotate fixing commit for CVE-2023-6704
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -151088,7 +151088,7 @@ CVE-2023-6704 (Use after free in libavif in Google Chrome prior to 120.0.6099.10
[bullseye] - libavif <not-affected> (Vulnerable code not present, PoC doesn't crash)
NOTE: https://issues.chromium.org/issues/40945359
NOTE: https://github.com/AOMediaCodec/libavif/pull/1808
- NOTE: https://github.com/AOMediaCodec/libavif/commit/7845153645cfe245de5add94fb07c227c2d16402 (v1.1.0)
+ NOTE: Fixed by: https://github.com/AOMediaCodec/libavif/commit/7845153645cfe245de5add94fb07c227c2d16402 (v1.1.0)
NOTE: Introduced by: https://github.com/AOMediaCodec/libavif/commit/146ed9551297303e5397a59d4ea45beca6d26791 (v1.1.0)
CVE-2023-6703 (Use after free in Blink in Google Chrome prior to 120.0.6099.109 allow ...)
{DSA-5577-1}
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a07df79fa2808e6062b56422a888e1fd5091ba5
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/1a07df79fa2808e6062b56422a888e1fd5091ba5
You're receiving this email because of your account on salsa.debian.org.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250519/887210e7/attachment.htm>
More information about the debian-security-tracker-commits
mailing list