Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian Jessie DSA-3507-1 Critical: Chromium Buffer Overflow

debian
Calendar Grey March 5, 2016
Debian Logo
- ------------------------------------------------------------------------- Debian Security Advisory
Several vulnerabilities have been discovered in the chromium web browser

Summary

CVE-2015-8126

Joerg Bornemann discovered multiple buffer overflow issues in the
libpng library.

CVE-2016-1630

Mariusz Mlynski discovered a way to bypass the Same Origin Policy
in Blink/Webkit.

CVE-2016-1631

Mariusz Mlynski discovered a way to bypass the Same Origin Policy
in the Pepper Plugin API.

CVE-2016-1632

A bad cast was discovered.

CVE-2016-1633

cloudfuzzer discovered a use-after-free issue in Blink/Webkit.

CVE-2016-1634

cloudfuzzer discovered a use-after-free issue in Blink/Webkit.

CVE-2016-1635

Rob Wu discovered a use-after-free issue in Blink/Webkit.

CVE-2016-1636

A way to bypass SubResource Integrity validation was discovered.

CVE-2016-1637

Keve Nagy discovered an information leak in the skia library.

CVE-2016-1638

Rob Wu discovered a WebAPI bypass issue.

CVE-2016-1639

Khalil Zhani discovered a use-after-free issue in the WebRTC
implementation.

CVE-2016-1640

Luan Herrera discovered an issue with the Extensions user interface.

CVE-2016-1641

...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: chromium-browser
CVE ID: CVE-2015-8126 CVE-2016-1630 CVE-2016-1631 CVE-2016-1632

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here