[Git][security-tracker-team/security-tracker][master] 2 commits: Updated findings on CVE-2026-10020.
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri May 29 19:27:56 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
213a40a7 by Filip Strömbäck at 2026-05-29T16:31:40+02:00
Updated findings on CVE-2026-10020.
- - - - -
6c5a6f88 by Salvatore Bonaccorso at 2026-05-29T20:27:51+02:00
Merge branch 'skia-cve-2026-10020' into 'master'
Findings on libskia for CVE-2026-10020
See merge request security-tracker-team/security-tracker!303
- - - - -
1 changed file:
- data/CVE/list
Changes:
=====================================
data/CVE/list
=====================================
@@ -632,7 +632,8 @@ CVE-2026-10021 (Insufficient validation of untrusted input in USB in Google Chro
CVE-2026-10020 (Insufficient validation of untrusted input in Skia in Google Chrome on ...)
- chromium <unfixed>
[bullseye] - chromium <end-of-life> (see #1061268)
- - libskia <unfixed>
+ - libskia <unfixed> (unimportant)
+ NOTE: Root cause for vulnerability is not in libskia (and fixed outside of Skia source)
CVE-2026-10019 (Integer overflow in ANGLE in Google Chrome prior to 148.0.7778.216 all ...)
- chromium <unfixed>
[bullseye] - chromium <end-of-life> (see #1061268)
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3fffff49a1460c32c1db53935c4cc6ad5b4361ef...6c5a6f88b3e5e3ad1622da8fe648d4ec1118f390
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/3fffff49a1460c32c1db53935c4cc6ad5b4361ef...6c5a6f88b3e5e3ad1622da8fe648d4ec1118f390
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260529/57dd9ca1/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list