Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 18 Oct 2015 16:39:14 +0000
From:      bugzilla-noreply@freebsd.org
To:        chromium@FreeBSD.org
Subject:   maintainer-feedback requested: [Bug 203857] www/chromium: update to 46.0.2490.71
Message-ID:  <bug-203857-28929-q5K60nSntF@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-203857-28929@https.bugs.freebsd.org/bugzilla/>
References:  <bug-203857-28929@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help
dezillium@dezillium.com has reassigned Bugzilla Automation
<bugzilla@FreeBSD.org>'s request for maintainer-feedback to
chromium@FreeBSD.org:
Bug 203857: www/chromium: update to 46.0.2490.71
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=203857



--- Description ---
Chromium needs to be updated to address multiple security vulnerabilities:
CVE-2015-6755: Cross-origin bypass in Blink.
CVE-2015-6756: Use-after-free in PDFium.
CVE-2015-6757: Use-after-free in ServiceWorker.
CVE-2015-6758: Bad-cast in PDFium.
CVE-2015-6759: Information leakage in LocalStorage.
CVE-2015-6760: Improper error handling in libANGLE.
CVE-2015-6761: Memory corruption in FFMpeg.
CVE-2015-6762: CORS bypass via CSS fonts.
CVE-2015-6763: Various fixes from internal audits, fuzzing and other
initiatives.

For more information:
http://googlechromereleases.blogspot.nl/2015/10/stable-channel-update.html



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-203857-28929-q5K60nSntF>