[Git][security-tracker-team/security-tracker][master] 2 commits: Add new chromium issues

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Jul 24 08:43:13 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ec7d32d2 by Salvatore Bonaccorso at 2026-07-24T09:42:37+02:00
Add new chromium issues

- - - - -
e0222aa1 by Salvatore Bonaccorso at 2026-07-24T09:42:52+02:00
Add chromium for dsa-needed list

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -109,13 +109,17 @@ CVE-2026-21653 (Victor SSRF vulnerability in Johnson Controls CCure 9000 and vic
 CVE-2026-16870 (Multiple security vulnerabilities in Snowflake libsnowflakeclient vers ...)
 	TODO: check
 CVE-2026-16807 (Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 ...)
-	TODO: check
+	- chromium <unfixed>
+	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-16806 (Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allo ...)
-	TODO: check
+	- chromium <unfixed>
+	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-16805 (Use after free in Blink in Google Chrome prior to 150.0.7871.186 allow ...)
-	TODO: check
+	- chromium <unfixed>
+	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-16804 (Use after free in Input in Google Chrome prior to 150.0.7871.186 allow ...)
-	TODO: check
+	- chromium <unfixed>
+	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-16796 (Improper neutralization of argument delimiters in the install_packages ...)
 	NOT-FOR-US: Amazon
 CVE-2026-16767 (A vulnerability was detected in Ne-Lexa php-zip up to 4.0.2. This affe ...)


=====================================
data/dsa-needed.txt
=====================================
@@ -29,6 +29,8 @@ cacti
 --
 caddy
 --
+chromium (dilinger)
+--
 cockpit
 --
 containerd



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/f2c3e914f245bab113b1b6e4417265b583eb6350...e0222aa1bf192fbe2a54bc81024ebee2eb782901

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/f2c3e914f245bab113b1b6e4417265b583eb6350...e0222aa1bf192fbe2a54bc81024ebee2eb782901
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260724/84234292/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list