diff options
author | Rene Ladan <rene@FreeBSD.org> | 2022-09-30 20:50:09 +0000 |
---|---|---|
committer | Rene Ladan <rene@FreeBSD.org> | 2022-09-30 20:50:47 +0000 |
commit | a2c6b1202c6eae7e10b8852774f72c95d420895c (patch) | |
tree | 730116e54080b050ea22369a8954d07f92fbff7c | |
parent | 0bc263c2a47023e858ae543b9375eebab4bc7806 (diff) |
security/vuxml: add www/chromium < 106.0.5249.91
Obtained from: https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_30.html
-rw-r--r-- | security/vuxml/vuln-2022.xml | 31 |
1 files changed, 31 insertions, 0 deletions
diff --git a/security/vuxml/vuln-2022.xml b/security/vuxml/vuln-2022.xml index ffbe525d0d7a..05085ce07706 100644 --- a/security/vuxml/vuln-2022.xml +++ b/security/vuxml/vuln-2022.xml @@ -1,3 +1,34 @@ + <vuln vid="d459c914-4100-11ed-9bc7-3065ec8fd3ec"> + <topic>chromium -- multiple vulnerabilities</topic> + <affects> + <package> + <name>chromium</name> + <range><lt>106.0.5249.91</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>Chrome Releases reports:</p> + <blockquote cite="https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_30.html"> + <p>This release contains 3 security fixes, including:</p> + <ul> + <li>[1366813] High CVE-2022-3370: Use after free in Custom Elements. Reported by Aviv A. on 2022-09-22</li> + <li>[1366399] High CVE-2022-3373: Out of bounds write in V8. Reported by Tibor Klajnscek on 2022-09-21</li> + </ul> + </blockquote> + </body> + </description> + <references> + <cvename>CVE-2022-3370</cvename> + <cvename>CVE-2022-3373</cvename> + <url>https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop_30.html</url> + </references> + <dates> + <discovery>2022-09-30</discovery> + <entry>2022-09-30</entry> + </dates> + </vuln> + <vuln vid="04422df1-40d8-11ed-9be7-454b1dd82c64"> <topic>Gitlab -- Multiple vulnerabilities</topic> <affects> |