aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorRobert Nagy <rnagy@FreeBSD.org>2024-02-08 12:52:03 +0000
committerRobert Nagy <rnagy@FreeBSD.org>2024-02-08 12:52:56 +0000
commita0f9b569456378b2ecb7903ee0b4a3ad7186804c (patch)
tree297eca30b6807fda25166c84f1b081fc98717af8
parent9ed607596cb38a0322e25853c0e9cf9c733e605e (diff)
downloadports-a0f9b569456378b2ecb7903ee0b4a3ad7186804c.tar.gz
ports-a0f9b569456378b2ecb7903ee0b4a3ad7186804c.zip
security/vuxml: add www/*chromium < 121.0.6167.160
-rw-r--r--security/vuxml/vuln/2024.xml35
1 files changed, 35 insertions, 0 deletions
diff --git a/security/vuxml/vuln/2024.xml b/security/vuxml/vuln/2024.xml
index 4bb0b9c5e77d..0ffe1b31ac61 100644
--- a/security/vuxml/vuln/2024.xml
+++ b/security/vuxml/vuln/2024.xml
@@ -1,3 +1,38 @@
+ <vuln vid="19047673-c680-11ee-86bb-a8a1599412c6">
+ <topic>chromium -- multiple security fixes</topic>
+ <affects>
+ <package>
+ <name>chromium</name>
+ <range><lt>121.0.6167.160</lt></range>
+ </package>
+ <package>
+ <name>ungoogled-chromium</name>
+ <range><lt>121.0.6167.160</lt></range>
+ </package>
+ </affects>
+ <description>
+ <body xmlns="http://www.w3.org/1999/xhtml">
+ <p>Chrome Releases reports:</p>
+ <blockquote cite="https://chromereleases.googleblog.com/2024/02/stable-channel-update-for-desktop.html">
+ <p>This update includes 3 security fixes:</p>
+ <ul>
+ <li>[41494539] High CVE-2024-1284: Use after free in Mojo. Reported by Anonymous on 2024-01-25</li>
+ <li>[41494860] High CVE-2024-1283: Heap buffer overflow in Skia. Reported by Jorge Buzeti (@r3tr074) on 2024-01-25</li>
+ </ul>
+ </blockquote>
+ </body>
+ </description>
+ <references>
+ <cvename>CVE-2024-1284</cvename>
+ <cvename>CVE-2024-1283</cvename>
+ <url>https://chromereleases.googleblog.com/2024/02/stable-channel-update-for-desktop.html</url>
+ </references>
+ <dates>
+ <discovery>2024-02-06</discovery>
+ <entry>2024-02-08</entry>
+ </dates>
+ </vuln>
+
<vuln vid="68ae70c5-c5e5-11ee-9768-08002784c58d">
<topic>clamav -- Multiple vulnerabilities</topic>
<affects>