Summary: | <www-client/chromium-78.0.3904.70: multiple vulnerabilities | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Stephan Hartmann (RETIRED) <sultan> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | chromium |
Priority: | Normal | Flags: | stable-bot:
sanity-check+
|
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
URL: | https://chromereleases.googleblog.com/2019/10/stable-channel-update-for-desktop_22.html | ||
See Also: | https://github.com/gentoo/gentoo/pull/13465 | ||
Whiteboard: | A2 [glsa+ cve] | ||
Package list: |
www-client/chromium-78.0.3904.70
|
Runtime testing required: | --- |
Description
Stephan Hartmann (RETIRED)
2019-10-23 16:21:07 UTC
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=401cccecb8de91c2b1e27ac202544e03bea13e2a commit 401cccecb8de91c2b1e27ac202544e03bea13e2a Author: Stephan Hartmann <stha09@googlemail.com> AuthorDate: 2019-10-24 13:40:28 +0000 Commit: Mike Gilbert <floppym@gentoo.org> CommitDate: 2019-10-25 03:06:40 +0000 www-client/chromium: stable channel bump to 78.0.3904.70 Bug: https://bugs.gentoo.org/698398 Package-Manager: Portage-2.3.76, Repoman-2.3.16 Signed-off-by: Stephan Hartmann <stha09@googlemail.com> Signed-off-by: Mike Gilbert <floppym@gentoo.org> www-client/chromium/Manifest | 2 +- .../{chromium-78.0.3904.63.ebuild => chromium-78.0.3904.70.ebuild} | 0 2 files changed, 1 insertion(+), 1 deletion(-) Added to an existing GLSA request. Removing inapplicable CVEs: CVE-2019-13702: Affecting installer, not us. CVE-2019-15903: Affectx bundled expat but we are using dev-libs/expat. amd64 stable. Maintainer(s), please cleanup. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=f39b48f3c96f1881eea8ba2bd5b3c0e19e091c4a commit f39b48f3c96f1881eea8ba2bd5b3c0e19e091c4a Author: Stephan Hartmann <stephan.hartmann@tu-dresden.de> AuthorDate: 2019-10-27 12:29:32 +0000 Commit: Mike Gilbert <floppym@gentoo.org> CommitDate: 2019-10-27 14:39:36 +0000 www-client/chromium: security cleanup Bug: https://bugs.gentoo.org/698398 Closes: https://github.com/gentoo/gentoo/pull/13465 Package-Manager: Portage-2.3.76, Repoman-2.3.16 Signed-off-by: Stephan Hartmann <stha09@googlemail.com> Signed-off-by: Mike Gilbert <floppym@gentoo.org> www-client/chromium/Manifest | 1 - www-client/chromium/chromium-77.0.3865.120.ebuild | 733 --------------------- .../chromium/files/chromium-77-blink-include.patch | 28 - .../chromium/files/chromium-77-fix-gn-gen.patch | 11 - .../chromium/files/chromium-77-gcc-abstract.patch | 61 -- .../chromium/files/chromium-77-gcc-alignas.patch | 72 -- .../chromium/files/chromium-77-gcc-include.patch | 26 - .../chromium/files/chromium-77-no-cups.patch | 42 -- .../chromium/files/chromium-77-std-string.patch | 130 ---- .../chromium/files/chromium-77-system-hb.patch | 13 - .../chromium/files/chromium-unbundle-zlib.patch | 25 - 11 files changed, 1142 deletions(-) This issue was resolved and addressed in GLSA 201911-06 at https://security.gentoo.org/glsa/201911-06 by GLSA coordinator Aaron Bauman (b-man). |