Summary: | <www-client/chromium-105.0.5195.102 <www-client/chromium-bin-105.0.5195.125 <www-client/google-chrome-105.0.5195.102: Insufficient data validation in Mojo | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | Sam James <sam> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | chromium, diamond, orodruinlair, voron1 |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | A2 [glsa+] | ||
Package list: | Runtime testing required: | --- | |
Bug Depends on: | 868351 | ||
Bug Blocks: | 868354 |
Description
Sam James
![]() ![]() ![]() ![]() The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=c8563a2c9ff1a1e1c4c4f85b72e5e7609a4d5146 commit c8563a2c9ff1a1e1c4c4f85b72e5e7609a4d5146 Author: Sam James <sam@gentoo.org> AuthorDate: 2022-09-04 04:46:43 +0000 Commit: Sam James <sam@gentoo.org> CommitDate: 2022-09-04 04:47:19 +0000 www-client/chromium: add 105.0.5195.102 Bug: https://bugs.gentoo.org/868156 Signed-off-by: Sam James <sam@gentoo.org> www-client/chromium/Manifest | 1 + www-client/chromium/chromium-105.0.5195.102.ebuild | 1186 ++++++++++++++++++++ 2 files changed, 1187 insertions(+) Is it possible to get a version bump for chromium-bin as well? www-client/chromium-105.0.5195.102 is already outdated. See https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_14.html The latest security patched stable version is 105.0.5195.125/126/127. (In reply to diamond from comment #3) > www-client/chromium-105.0.5195.102 is already outdated. See > https://chromereleases.googleblog.com/2022/09/stable-channel-update-for- > desktop_14.html > The latest security patched stable version is 105.0.5195.125/126/127. Then that merits a new bug. The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/repo/gentoo.git/commit/?id=cce91c353d53069602554b66b5345199a8d00e61 commit cce91c353d53069602554b66b5345199a8d00e61 Author: Stephan Hartmann <sultan@gentoo.org> AuthorDate: 2022-09-22 18:14:05 +0000 Commit: Stephan Hartmann <sultan@gentoo.org> CommitDate: 2022-09-22 18:14:23 +0000 www-client/chromium: drop 105.0.5195.52 Bug: https://bugs.gentoo.org/868156 Signed-off-by: Stephan Hartmann <sultan@gentoo.org> www-client/chromium/Manifest | 1 - www-client/chromium/chromium-105.0.5195.52.ebuild | 1186 --------------------- 2 files changed, 1187 deletions(-) GLSA request filed The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=31ae708a90dd2ca9e628226aec8c4362dffb1794 commit 31ae708a90dd2ca9e628226aec8c4362dffb1794 Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2022-09-29 14:24:25 +0000 Commit: John Helmert III <ajak@gentoo.org> CommitDate: 2022-09-29 14:48:01 +0000 [ GLSA 202209-23 ] Chromium, Google Chrome, Microsoft Edge: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/868156 Bug: https://bugs.gentoo.org/868354 Bug: https://bugs.gentoo.org/870142 Bug: https://bugs.gentoo.org/872407 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: John Helmert III <ajak@gentoo.org> glsa-202209-23.xml | 112 +++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 112 insertions(+) GLSA released, all done! |