[Git][security-tracker-team/security-tracker][master] 2 commits: Add chromium to dsa-needed list

Salvatore Bonaccorso (@carnil) carnil at debian.org
Fri Sep 18 09:36:32 BST 2026



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
29cf7b00 by Salvatore Bonaccorso at 2026-09-18T10:34:02+02:00
Add chromium to dsa-needed list

- - - - -
f8a6ce85 by Salvatore Bonaccorso at 2026-09-18T10:36:01+02:00
Add new chromium issues

- - - - -


2 changed files:

- data/CVE/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -43,37 +43,37 @@ CVE-2026-93393 (A heap-based buffer overflow exists in the TLS transport layer o
 	NOTE: https://jira.mongodb.org/browse/CDRIVER-6417
 	TODO: check details, upstream issue not public and no commit reference CDRIVER-6417
 CVE-2026-93387 (Improper state validation in Skia in Google Chrome prior to 153.0.8010 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93386 (UI misrepresentation in WebAppInstalls in Google Chrome prior to 153.0 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93385 (Information leak in Paint in Google Chrome prior to 153.0.8010.52 allo ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93384 (Server-side request forgery in Omnibox in Google Chrome on on Android  ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93383 (Information leak in Permissions in Google Chrome prior to 153.0.8010.5 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93382 (Use after free in PDFium in Google Chrome prior to 153.0.8010.52 allow ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93381 (Buffer overflow in PDFium in Google Chrome on on Windows prior to 153. ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93380 (Race condition in FileSystem in Google Chrome prior to 153.0.8010.52 a ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93379 (Incorrect authorization in ORB in Google Chrome prior to 153.0.8010.52 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93378 (Missing authorization in Storage in Google Chrome prior to 153.0.8010. ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93377 (Type confusion in V8 in Google Chrome prior to 153.0.8010.52 allowed a ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93376 (Out of bounds read in DataTransfer in Google Chrome prior to 153.0.801 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93375 (Incorrect reference resolution in Tracing in Google Chrome on on Windo ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93374 (Use after free in Dawn in Google Chrome on on Android prior to 153.0.8 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93373 (Use after free in Extensions in Google Chrome prior to 153.0.8010.52 a ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93372 (Buffer overflow in WebGL in Google Chrome on on Android prior to 153.0 ...)
-	TODO: check
+	- chromium <unfixed>
 CVE-2026-93371 (A security vulnerability has been detected in marcopiovanello yt-dlp-w ...)
 	TODO: check
 CVE-2026-93331 (A vulnerability was identified in GPAC 26.08-DEV. This vulnerability a ...)


=====================================
data/dsa-needed.txt
=====================================
@@ -26,6 +26,8 @@ bouncycastle
 cacti
   probably best to move to 1.2.31
 --
+chromium (dilinger)
+--
 containerd
 --
 cups



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/cbe5b207338ed94b9aa55eee3de62ebcef6e3511...f8a6ce85420d38c6d293cf5beb6433699d54e45a

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/compare/cbe5b207338ed94b9aa55eee3de62ebcef6e3511...f8a6ce85420d38c6d293cf5beb6433699d54e45a
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260918/2c7f54e3/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list