Author: joeyh Date: 2011-03-17 09:20:04 +0000 (Thu, 17 Mar 2011) New Revision: 16396 Modified: data/CVE/list Log: automatic update Modified: data/CVE/list ==================================================================--- data/CVE/list 2011-03-17 04:45:53 UTC (rev 16395) +++ data/CVE/list 2011-03-17 09:20:04 UTC (rev 16396) @@ -260,7 +260,7 @@ {DSA-2192-1} - chromium-browser 10.0.648.133~r77742-1 - webkit <unfixed> - NOTE: needs port + NOTE: needs port NOTE: http://trac.webkit.org/changeset/80787 CVE-2011-1289 RESERVED @@ -455,13 +455,13 @@ - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - webkit <not-affected> (losecontext not present in 1.2) - TODO: recheck webkit 1.3 + TODO: recheck webkit 1.3 NOTE: http://trac.webkit.org/changeset/78921 CVE-2011-1200 (Google Chrome before 10.0.648.127 does not properly perform a cast of ...) - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - webkit <not-affected> (vulnerable code not present) - TODO: recheck webkit 1.3 + TODO: recheck webkit 1.3 NOTE: http://trac.webkit.org/changeset/78744 CVE-2011-1199 (Google Chrome before 10.0.648.127 does not properly handle DataView ...) - chromium-browser 10.0.648.127~r76697-1 @@ -472,7 +472,7 @@ - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - ffmpeg <undetermined> - TODO: need info on ffmpeg + TODO: need info on ffmpeg CVE-2011-1197 (Google Chrome before 10.0.648.127 does not properly perform table ...) {DSA-2189-1} - chromium-browser 10.0.648.127~r76697-1 @@ -482,19 +482,19 @@ - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - ffmpeg <undetermined> - TODO: need info on ffmpeg + TODO: need info on ffmpeg CVE-2011-1195 (Use-after-free vulnerability in Google Chrome before 10.0.648.127 ...) - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - webkit <not-affected> (vulnerable code not present) - TODO: recheck webkit 1.3 + TODO: recheck webkit 1.3 NOTE: http://trac.webkit.org/changeset/78147 CVE-2011-1194 (Multiple unspecified vulnerabilities in Google Chrome before ...) - chromium-browser <unfixed> (unimportant) - webkit <unfixed> (unimportant) NOTE: http://trac.webkit.org/changeset/77049 - NOTE: http://trac.webkit.org/changeset/77329 - NOTE: popup blocker bypass not treated as a security issue + NOTE: http://trac.webkit.org/changeset/77329 + NOTE: popup blocker bypass not treated as a security issue CVE-2011-1193 (Google V8, as used in Google Chrome before 10.0.648.127, allows remote ...) - libv8 <unfixed> (bug #617418) CVE-2011-1192 (Google Chrome before 10.0.648.127 on Linux does not properly handle ...) @@ -506,7 +506,7 @@ - chromium-browser 10.0.648.127~r76697-1 [squeeze] - chromium-browser <not-affected> - webkit <not-affected> (vulnerable code not yet present) - TODO: recheck webkit 1.3 + TODO: recheck webkit 1.3 NOTE: http://trac.webkit.org/changeset/76652 CVE-2011-1190 (The Web Workers implementation in Google Chrome before 10.0.648.127 ...) {DSA-2189-1} @@ -523,7 +523,7 @@ - chromium-browser 10.0.648.127~r76697-1 - webkit <undetermined> NOTE: http://trac.webkit.org/changeset/77142 - TODO: ^ this commit only contains tests for the issue, need commit # for fix + TODO: ^ this commit only contains tests for the issue, need commit # for fix CVE-2011-1187 (Google Chrome before 10.0.648.127 allows remote attackers to bypass ...) - libv8 <unfixed> (bug #617418) CVE-2011-1186 (Google Chrome before 10.0.648.127 on Linux does not properly handle ...)