Your message dated Mon, 24 Oct 2011 20:37:32 -0400
with message-id
<CANTw=mn-z_+fxzmryu_d27zecaillec0t6sg6oqndpu5k4u...@mail.gmail.com>
and subject line fixed
has caused the Debian Bug report #617418,
regarding v8 security issues fixed in chromium 10.0.648.127
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
617418: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=617418
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: libv8
Severity: serious
Tags: security
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Hi,
chromium 10.0.648.127 fixed the following security issues in libv8:
# [$1000] [74675] High Invalid memory access in v8. Credit to Christian Holler.
http://code.google.com/p/v8/issues/detail?id=1146
Patch: http://code.google.com/p/v8/source/detail?r=6773
# [$1000] [74662] High Corruption via re-entrancy of RegExp code. Credit to
Christian Holler.
http://code.google.com/p/v8/issues/detail?id=1108
Patch: http://code.google.com/p/v8/source/detail?r=6794
http://code.google.com/p/v8/source/detail?r=6805
http://code.google.com/p/v8/source/detail?r=6837
# [$1337] [70877] High Same origin policy bypass in v8. Credit to Daniel
Divricean.
I have no info at this moment, could you ask upstream more info?
#[$1337] [69187] Medium Cross-origin error message leak. Credit to Daniel
Divricean.
http://code.google.com/p/v8/source/detail?r=6435
These need to be backported for squeeze.
Cheers,
Giuseppe.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
iEYEARECAAYFAk12geEACgkQNxpp46476arHAwCdERD5hFencMybvi3op77F44hB
TcsAnRz4NuVIvKfbJDJSyllux4OExL7y
=0+Lf
-----END PGP SIGNATURE-----
--- End Message ---
--- Begin Message ---
version: 3.1.8.10-1
--- End Message ---
_______________________________________________
Pkg-javascript-devel mailing list
[email protected]
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/pkg-javascript-devel