Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.703456
Kategorie:Debian Local Security Checks
Titel:Debian Security Advisory DSA 3456-1 (chromium-browser - security update)
Zusammenfassung:Several vulnerabilities were;discovered in the chromium web browser.;;CVE-2015-6792;An issue was found in the handling of MIDI files.;;CVE-2016-1612;cloudfuzzer discovered a logic error related to receiver;compatibility in the v8 javascript library.;;CVE-2016-1613;A use-after-free issue was discovered in the pdfium library.;;CVE-2016-1614;Christoph Diehl discovered an information leak in Webkit/Blink.;;CVE-2016-1615;Ron Masas discovered a way to spoof URLs.;;CVE-2016-1616;Luan Herrera discovered a way to spoof URLs.;;CVE-2016-1617;jenuis discovered a way to discover whether an HSTS web site had;been visited.;;CVE-2016-1618;Aaron Toponce discovered the use of weak random number;generator.;;CVE-2016-1619;Keve Nagy discovered an out-of-bounds-read issue in the pdfium;library.;;CVE-2016-1620;The chrome 48 development team found and fixed various issues;during internal auditing. Also multiple issues were fixed in;the v8 javascript library, version 4.7.271.17.
Beschreibung:Summary:
Several vulnerabilities were
discovered in the chromium web browser.

CVE-2015-6792
An issue was found in the handling of MIDI files.

CVE-2016-1612
cloudfuzzer discovered a logic error related to receiver
compatibility in the v8 javascript library.

CVE-2016-1613
A use-after-free issue was discovered in the pdfium library.

CVE-2016-1614
Christoph Diehl discovered an information leak in Webkit/Blink.

CVE-2016-1615
Ron Masas discovered a way to spoof URLs.

CVE-2016-1616
Luan Herrera discovered a way to spoof URLs.

CVE-2016-1617
jenuis discovered a way to discover whether an HSTS web site had
been visited.

CVE-2016-1618
Aaron Toponce discovered the use of weak random number
generator.

CVE-2016-1619
Keve Nagy discovered an out-of-bounds-read issue in the pdfium
library.

CVE-2016-1620
The chrome 48 development team found and fixed various issues
during internal auditing. Also multiple issues were fixed in
the v8 javascript library, version 4.7.271.17.

Affected Software/OS:
chromium-browser on Debian Linux

Solution:
For the stable distribution (jessie),
these problems have been fixed in version 48.0.2564.82-1~
deb8u1.

For the testing distribution (stretch), these problems will be fixed soon.

For the unstable distribution (sid), these problems have been fixed in
version 48.0.2564.82-1.

We recommend that you upgrade your chromium-browser packages.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2015-6792
BugTraq ID: 79348
http://www.securityfocus.com/bid/79348
Debian Security Information: DSA-3456 (Google Search)
http://www.debian.org/security/2016/dsa-3456
https://security.gentoo.org/glsa/201603-09
RedHat Security Advisories: RHSA-2015:2665
http://rhn.redhat.com/errata/RHSA-2015-2665.html
http://www.securitytracker.com/id/1034491
SuSE Security Announcement: openSUSE-SU-2015:2346 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00029.html
SuSE Security Announcement: openSUSE-SU-2015:2347 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-12/msg00030.html
Common Vulnerability Exposure (CVE) ID: CVE-2016-1612
BugTraq ID: 81431
http://www.securityfocus.com/bid/81431
RedHat Security Advisories: RHSA-2016:0072
http://rhn.redhat.com/errata/RHSA-2016-0072.html
http://www.securitytracker.com/id/1034801
SuSE Security Announcement: openSUSE-SU-2016:0249 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00035.html
SuSE Security Announcement: openSUSE-SU-2016:0250 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00036.html
SuSE Security Announcement: openSUSE-SU-2016:0271 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00046.html
http://www.ubuntu.com/usn/USN-2877-1
Common Vulnerability Exposure (CVE) ID: CVE-2016-1613
BugTraq ID: 81430
http://www.securityfocus.com/bid/81430
Common Vulnerability Exposure (CVE) ID: CVE-2016-1614
Common Vulnerability Exposure (CVE) ID: CVE-2016-1615
Common Vulnerability Exposure (CVE) ID: CVE-2016-1616
Common Vulnerability Exposure (CVE) ID: CVE-2016-1617
Common Vulnerability Exposure (CVE) ID: CVE-2016-1618
Common Vulnerability Exposure (CVE) ID: CVE-2016-1619
Common Vulnerability Exposure (CVE) ID: CVE-2016-1620
CopyrightCopyright (C) 2016 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.