[Git][security-tracker-team/security-tracker][master] Track fixed version for chromium via unstable upload

Salvatore Bonaccorso (@carnil) carnil at debian.org
Tue Jun 9 20:35:28 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ba41d856 by Salvatore Bonaccorso at 2026-06-09T21:34:25+02:00
Track fixed version for chromium via unstable upload

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -1361,226 +1361,226 @@ CVE-2026-10553 (The jQuery Hover Footnotes plugin for WordPress is vulnerable to
 CVE-2026-10024 (The TinyMCE shortcode Addon plugin for WordPress is vulnerable to Stor ...)
 	NOT-FOR-US: WordPress plugin
 CVE-2026-11628 (Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allow ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11629 (Use after free in Ozone in Google Chrome prior to 149.0.7827.103 allow ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11630 (Use after free in File Input in Google Chrome prior to 149.0.7827.103  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11631 (Use after free in Aura in Google Chrome on Windows prior to 149.0.7827 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11632 (Use after free in TabStrip in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11633 (Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11634 (Use after free in Gamepad in Google Chrome on Windows prior to 149.0.7 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11635 (Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11636 (Use after free in Autofill in Google Chrome on Windows prior to 149.0. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11637 (Use after free in Views in Google Chrome on Mac prior to 149.0.7827.10 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11638 (Use after free in Printing in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11639 (Use after free in Compositing in Google Chrome on Mac prior to 149.0.7 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11640 (Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11641 (Use after free in Bluetooth in Google Chrome on Windows prior to 149.0 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11642 (Use after free in Web Apps in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11643 (Use after free in Proxy in Google Chrome prior to 149.0.7827.103 allow ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11644 (Use after free in Views in Google Chrome on Linux prior to 149.0.7827. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11645 (Out of bounds read and write in V8 in Google Chrome prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11646 (Use after free in ViewTransitions in Google Chrome prior to 149.0.7827 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11647 (Use after free in Printing in Google Chrome on Android prior to 149.0. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11648 (Use after free in FullScreen in Google Chrome on Windows prior to 149. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11649 (Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11650 (Use after free in V8 in Google Chrome prior to 149.0.7827.103 allowed  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11651 (Use after free in Network in Google Chrome prior to 149.0.7827.103 all ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11652 (Use after free in Extensions in Google Chrome prior to 149.0.7827.103  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11653 (Inappropriate implementation in Extensions in Google Chrome prior to 1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11654 (Use after free in CameraCapture in Google Chrome on Mac prior to 149.0 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11655 (Integer overflow in Media in Google Chrome on Mac prior to 149.0.7827. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11656 (Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11657 (Use after free in Payments in Google Chrome on Mac prior to 149.0.7827 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11658 (Insufficient validation of untrusted input in Extensions in Google Chr ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11659 (Integer overflow in UI in Google Chrome on Linux prior to 149.0.7827.1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11660 (Insufficient validation of untrusted input in New Tab Page in Google C ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11661 (Use after free in Views in Google Chrome on Windows prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11662 (Type Confusion in Bindings in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11663 (Use after free in Skia in Google Chrome prior to 149.0.7827.103 allowe ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11664 (Use after free in Payments in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11665 (Out of bounds read in Dawn in Google Chrome on Windows prior to 149.0. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11666 (Insufficient validation of untrusted input in Input in Google Chrome p ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11667 (Out of bounds read in WebRTC in Google Chrome prior to 149.0.7827.103  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11668 (Uninitialized Use in Codecs in Google Chrome on Linux, ChromeOS prior  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11669 (Out of bounds read in Media in Google Chrome on ChromeOS prior to 149. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11670 (Use after free in PDF in Google Chrome prior to 149.0.7827.103 allowed ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11671 (Use after free in Navigation in Google Chrome prior to 149.0.7827.103  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11672 (Heap buffer overflow in GPU in Google Chrome on Android prior to 149.0 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11673 (Use after free in InterestGroups in Google Chrome prior to 149.0.7827. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11674 (Use after free in Guest View in Google Chrome prior to 149.0.7827.103  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11675 (Out of bounds read in Skia in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11676 (Insufficient validation of untrusted input in Dawn in Google Chrome on ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11677 (Race in Network in Google Chrome on Mac prior to 149.0.7827.103 allowe ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11678 (Integer overflow in libyuv in Google Chrome prior to 149.0.7827.103 al ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11679 (Use after free in Codecs in Google Chrome on Windows prior to 149.0.78 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11680 (Use after free in Media in Google Chrome on Windows prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11681 (Use after free in Ozone in Google Chrome on Linux prior to 149.0.7827. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11682 (Inappropriate implementation in Views in Google Chrome on Linux prior  ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11683 (Use after free in WebCodecs in Google Chrome prior to 149.0.7827.103 a ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11684 (Insufficient policy enforcement in Network in Google Chrome prior to 1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11685 (Inappropriate implementation in MediaCapture in Google Chrome on Mac p ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11686 (Insufficient validation of untrusted input in Dawn in Google Chrome on ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11687 (Use after free in Dawn in Google Chrome on Mac prior to 149.0.7827.103 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11688 (Inappropriate implementation in SVG in Google Chrome prior to 149.0.78 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11689 (Insufficient policy enforcement in Passwords in Google Chrome prior to ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11690 (Out of bounds read and write in Media in Google Chrome on Mac prior to ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11691 (Insufficient validation of untrusted input in New Tab Page in Google C ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11692 (Use after free in Read Anything in Google Chrome prior to 149.0.7827.1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11693 (Inappropriate implementation in Plugins in Google Chrome prior to 149. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11694 (Use after free in ServiceWorker in Google Chrome prior to 149.0.7827.1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11695 (Inappropriate implementation in Passwords in Google Chrome prior to 14 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11696 (Uninitialized Use in Video in Google Chrome on Windows prior to 149.0. ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11697 (Insufficient validation of untrusted input in UI in Google Chrome prio ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11698 (Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11699 (Use after free in Bluetooth in Google Chrome on Mac prior to 149.0.782 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11700 (Use after free in Tracing in Google Chrome prior to 149.0.7827.103 all ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-11701 (Inappropriate implementation in Guest View in Google Chrome prior to 1 ...)
-	- chromium <unfixed>
+	- chromium 149.0.7827.102-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
 CVE-2026-9669 (bz2.BZ2Decompressor objects could be reused after a decompression erro ...)
 	- python3.14 <unfixed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba41d85671b98aa227739914f552ba7760595dbc

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ba41d85671b98aa227739914f552ba7760595dbc
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260609/0052c40e/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list