[Git][security-tracker-team/security-tracker][master] unlink CVE-2026-78958 from libskia, thanks to Filip Strömbäck

Moritz Muehlenhoff (@jmm) jmm at debian.org
Wed Sep 2 15:07:26 BST 2026



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
fb2d5312 by Moritz Muehlenhoff at 2026-09-02T16:06:36+02:00
unlink CVE-2026-78958 from libskia, thanks to Filip Strömbäck

It's a bug in how Chromium uses skia, not in skia itself.

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -7331,7 +7331,6 @@ CVE-2026-78959 (Improper handling of case sensitivity in FileSystem in Google Ch
 CVE-2026-78958 (Uninitialized resource in Skia in Google Chrome prior to 152.0.7977.65 ...)
 	- chromium 152.0.7977.64-1
 	[bullseye] - chromium <end-of-life> (see #1061268)
-	- libskia <unfixed>
 CVE-2026-78957 (Information leak in Mobile in Google Chrome on on iOS prior to 152.0.7 ...)
 	- chromium 152.0.7977.64-1
 	[bullseye] - chromium <end-of-life> (see #1061268)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fb2d5312cdbc1c1340bac608e5d65bc29ffe064b

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/fb2d5312cdbc1c1340bac608e5d65bc29ffe064b
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260902/62ab15cd/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list