[FREEBSD:01FFD06A-36ED-11EB-B655-3065EC8FD3EC] chromium -- multiple vulnerabilities

Severity High
Affected Packages 1
CVEs 6

Chrome Releases reports:

  This release contains 8 security fixes, including:

    [1142331] High CVE-2020-16037: Use after free in clipboard.
      Reported by Ryoya Tsukasaki on 2020-10-26
    [1138683] High CVE-2020-16038: Use after free in media.
      Reported by Khalil Zhani on 2020-10-14
    [1149177] High CVE-2020-16039: Use after free in extensions.
      Reported by Anonymous on 2020-11-15
    [1150649] High CVE-2020-16040: Insufficient data validation in
      V8. Reported by Lucas Pinheiro, Microsoft Browser Vulnerability
      Research on 2020-11-19
    [1151865] Medium CVE-2020-16041: Out of bounds read in
      networking. Reported by Sergei Glazunov and Mark Brand of Google
      Project Zero on 2020-11-23
    [1151890] Medium CVE-2020-16042: Uninitialized Use in V8.
      Reported by André Bargull on 2020-11-2
Package Affected Version
pkg:freebsd/chromium < 87.0.4280.88
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:freebsd/chromium chromium < 87.0.4280.88
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...