[Git][security-tracker-team/security-tracker][master] 2 commits: Add chromium to dsa-needed list
Salvatore Bonaccorso (@carnil)
carnil at debian.org
Fri Sep 18 09:36:32 BST 2026
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker
Commits:
29cf7b00 by Salvatore Bonaccorso at 2026-09-18T10:34:02+02:00
Add chromium to dsa-needed list
- - - - -
f8a6ce85 by Salvatore Bonaccorso at 2026-09-18T10:36:01+02:00
Add new chromium issues
- - - - -
2 changed files:
- data/CVE/list
- data/dsa-needed.txt
Changes:
=====================================
data/CVE/list
=====================================
@@ -43,37 +43,37 @@ CVE-2026-93393 (A heap-based buffer overflow exists in the TLS transport layer o
NOTE: https://jira.mongodb.org/browse/CDRIVER-6417
TODO: check details, upstream issue not public and no commit reference CDRIVER-6417
CVE-2026-93387 (Improper state validation in Skia in Google Chrome prior to 153.0.8010 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93386 (UI misrepresentation in WebAppInstalls in Google Chrome prior to 153.0 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93385 (Information leak in Paint in Google Chrome prior to 153.0.8010.52 allo ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93384 (Server-side request forgery in Omnibox in Google Chrome on on Android ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93383 (Information leak in Permissions in Google Chrome prior to 153.0.8010.5 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93382 (Use after free in PDFium in Google Chrome prior to 153.0.8010.52 allow ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93381 (Buffer overflow in PDFium in Google Chrome on on Windows prior to 153. ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93380 (Race condition in FileSystem in Google Chrome prior to 153.0.8010.52 a ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93379 (Incorrect authorization in ORB in Google Chrome prior to 153.0.8010.52 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93378 (Missing authorization in Storage in Google Chrome prior to 153.0.8010. ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93377 (Type confusion in V8 in Google Chrome prior to 153.0.8010.52 allowed a ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93376 (Out of bounds read in DataTransfer in Google Chrome prior to 153.0.801 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93375 (Incorrect reference resolution in Tracing in Google Chrome on on Windo ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93374 (Use after free in Dawn in Google Chrome on on Android prior to 153.0.8 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93373 (Use after free in Extensions in Google Chrome prior to 153.0.8010.52 a ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93372 (Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0 ...)
- TODO: check
+ - chromium <unfixed>
CVE-2026-93371 (A security vulnerability has been detected in marcopiovanello yt-dlp-w ...)
TODO: check
CVE-2026-93331 (A vulnerability was identified in GPAC 26.08-DEV. This vulnerability a ...)
=====================================
data/dsa-needed.txt
=====================================
@@ -26,6 +26,8 @@ bouncycastle
cacti
probably best to move to 1.2.31
--
+chromium (dilinger)
+--
containerd
--
cups
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/cbe5b207338ed94b9aa55eee3de62ebcef6e3511...f8a6ce85420d38c6d293cf5beb6433699d54e45a
--
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/cbe5b207338ed94b9aa55eee3de62ebcef6e3511...f8a6ce85420d38c6d293cf5beb6433699d54e45a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260918/2c7f54e3/attachment-0001.htm>
More information about the debian-security-tracker-commits
mailing list