Alerts This Week
Warning Icon 1 560
Alerts This Week
Warning Icon 1 560

Debian 8 DSA-3776-1 Critical: Chromium Browser Cross-Site Issues

debian
Calendar Grey January 31, 2017
Debian Logo
Ubuntu Security Update for firefox fixes multiple vulnerabilities related to code execution and data leaks.
Several vulnerabilities have been discovered in the chromium web browser

Summary

CVE-2017-5006

Mariusz Mlynski discovered a cross-site scripting issue.

CVE-2017-5007

Mariusz Mlynski discovered another cross-site scripting issue.

CVE-2017-5008

Mariusz Mlynski discovered a third cross-site scripting issue.

CVE-2017-5009

Sean Stanek and Chip Bradford discovered an out-of-bounds memory
issue in the webrtc library.

CVE-2017-5010

Mariusz Mlynski discovered a fourth cross-site scripting issue.

CVE-2017-5011

Khalil Zhani discovered a way to access unauthorized files in the
developer tools.

CVE-2017-5012

Gergely Nagy discovered a heap overflow issue in the v8 javascript
library.

CVE-2017-5013

Haosheng Wang discovered a URL spoofing issue.

CVE-2017-5014

sweetchip discovered a heap overflow issue in the skia library.

CVE-2017-5015

Armin Razmdjou discovered a URL spoofing issue.

CVE-2017-5016

Haosheng Wang discovered another URL spoofing issue.

CVE-2017-5017

danberm discovered an uninitialized memory issue in support for
webm video files.

...

Read the Full Advisory

Severity
critical
Lowest
Low
Medium
High
Critical

Package: chromium-browser
CVE ID: CVE-2017-5006 CVE-2017-5007 CVE-2017-5008 CVE-2017-5009

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here