From 7745a00c3654aa0da7dbd8db937a39eaad83a823 Mon Sep 17 00:00:00 2001 From: Kristian Fiskerstrand Date: Mon, 10 Apr 2017 23:28:48 +0200 Subject: Add GLSA 201704-02 --- glsa-201704-02.xml | 56 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 56 insertions(+) create mode 100644 glsa-201704-02.xml (limited to 'glsa-201704-02.xml') diff --git a/glsa-201704-02.xml b/glsa-201704-02.xml new file mode 100644 index 00000000..81408b30 --- /dev/null +++ b/glsa-201704-02.xml @@ -0,0 +1,56 @@ + + + + Chromium: Multiple vulnerabilities + Multiple vulnerabilities have been found in the Chromium web + browser, the worst of which allows remote attackers to execute arbitrary + code. + + chromium + 2017-04-10 + 2017-04-10: 1 + 614276 + remote + + + 57.0.2987.133 + 57.0.2987.133 + + + +

Chromium is the open-source web browser project behind Google Chrome

+
+ +

Multiple vulnerabilities have been discovered in the Chromium web + browser. Please review the CVE identifiers referenced below for details. +

+
+ +

A remote attacker could possibly execute arbitrary code with the + privileges of the process, cause a Denial of Service condition, obtain + sensitive information, or bypass security restrictions. +

+
+ +

There is no known workaround at this time.

+
+ +

All Chromium users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose + ">=www-client/chromium-57.0.2987.133" + + +
+ + CVE-2017-5052 + CVE-2017-5053 + CVE-2017-5054 + CVE-2017-5055 + CVE-2017-5056 + + BlueKnight + BlueKnight +
-- cgit v1.2.3-65-gdbad