Author: iuculano Date: 2012-08-06 10:01:02 +0000 (Mon, 06 Aug 2012) New Revision: 19894 Modified: data/CVE/list Log: start Chromium triage Modified: data/CVE/list ==================================================================--- data/CVE/list 2012-08-06 09:08:44 UTC (rev 19893) +++ data/CVE/list 2012-08-06 10:01:02 UTC (rev 19894) @@ -2842,16 +2842,21 @@ RESERVED CVE-2012-2860 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> + NOTE: http://trac.webkit.org/changeset/122918 CVE-2012-2859 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2858 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2857 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2856 RESERVED - chromium-browser <not-affected> (PDF functionality not present in Chromium) @@ -2860,10 +2865,12 @@ - chromium-browser <not-affected> (PDF functionality not present in Chromium) CVE-2012-2854 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2853 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2852 RESERVED - chromium-browser <not-affected> (PDF functionality not present in Chromium) @@ -2875,27 +2882,33 @@ - chromium-browser <not-affected> (PDF functionality not present in Chromium) CVE-2012-2849 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2848 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2847 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <not-affected> CVE-2012-2846 RESERVED - - chromium-browser <unfixed> + - chromium-browser 21.0.1180.57~r148591 + [squeeze] - chromium-browser <no-dsa> (minor issue) CVE-2012-2845 (Integer overflow in the jpeg_data_load_data function in jpeg-data.c in ...) - exif 0.6.20-3 (low; bug #681465) [squeeze] - exif <no-dsa> (Minor crasher) NOTE: https://bugzilla.novell.com/show_bug.cgi?id=771229 NOTE: http://seclists.org/oss-sec/2012/q3/74 CVE-2012-2844 (The PDF functionality in Google Chrome before 20.0.1132.57 does not ...) - - chromium-browser 20.0.1132.57~r145807-1 + - chromium-browser <not-affected> CVE-2012-2843 (Use-after-free vulnerability in Google Chrome before 20.0.1132.57 ...) - chromium-browser 20.0.1132.57~r145807-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2842 (Use-after-free vulnerability in Google Chrome before 20.0.1132.57 ...) - chromium-browser 20.0.1132.57~r145807-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2841 (Integer underflow in the exif_entry_get_value function in exif-entry.c ...) - libexif 0.6.20-3 (bug #681454) NOTE: https://bugzilla.novell.com/show_bug.cgi?id=771229 @@ -2920,14 +2933,17 @@ RESERVED CVE-2012-2834 (Integer overflow in Google Chrome before 20.0.1132.43 allows remote ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2833 (Buffer overflow in the JS API in the PDF functionality in Google ...) - chromium-browser <not-affected> (PDF functionality not present in Chromium) CVE-2012-2832 (The image-codec implementation in the PDF functionality in Google ...) - chromium-browser <not-affected> (PDF functionality not present in Chromium) CVE-2012-2831 (Use-after-free vulnerability in Google Chrome before 20.0.1132.43 ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2830 (Google Chrome before 20.0.1132.43 does not properly set array values, ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2829 (Use-after-free vulnerability in the Cascading Style Sheets (CSS) ...) - chromium-browser 20.0.1132.43~r143823-1 CVE-2012-2828 (Multiple integer overflows in the PDF functionality in Google Chrome ...) @@ -2936,28 +2952,37 @@ - chromium-browser <not-affected> (MacOS specific) CVE-2012-2826 (Google Chrome before 20.0.1132.43 does not properly implement texture ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2825 (The XSL implementation in Google Chrome before 20.0.1132.43 allows ...) - libxslt 1.1.26-13 (bug #679283) CVE-2012-2824 (Use-after-free vulnerability in Google Chrome before 20.0.1132.43 ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2823 (Use-after-free vulnerability in Google Chrome before 20.0.1132.43 ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2822 (The PDF functionality in Google Chrome before 20.0.1132.43 allows ...) - chromium-browser <not-affected> (PDF functionality not present in Chromium) CVE-2012-2821 (The autofill implementation in Google Chrome before 20.0.1132.43 does ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2820 (Google Chrome before 20.0.1132.43 does not properly implement SVG ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2819 (The texSubImage2D implementation in the WebGL subsystem in Google ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2818 (Use-after-free vulnerability in Google Chrome before 20.0.1132.43 ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2817 (Use-after-free vulnerability in Google Chrome before 20.0.1132.43 ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <not-affected> CVE-2012-2816 (Google Chrome before 20.0.1132.43 on Windows does not properly isolate ...) - - chromium-browser <unfixed> + - chromium-browser <not-affected> (windows-only) CVE-2012-2815 (Google Chrome before 20.0.1132.43 allows remote attackers to obtain ...) - chromium-browser 20.0.1132.43~r143823-1 + [squeeze] - chromium-browser <no-dsa> (minor issue) CVE-2012-2814 (Buffer overflow in the exif_entry_format_value function in ...) - libexif 0.6.20-3 (bug #681454) NOTE: https://bugzilla.novell.com/show_bug.cgi?id=771229