Package: chromium
Version: 89.0.4389.82-1
Severity: grave
Tags: upstream security
Justification: user security hole
X-Debbugs-Cc: aeru...@aerusso.net, Debian Security Team 
<t...@security.debian.org>

Per [1] (or [2], and allegedly [3] which I cannot access):

> A use after free security issue was found in the Blink component of the
> Chromium browser before version 89.0.4389.90. Google is aware of reports
> that an exploit for this issue exists in the wild.

Does this also affect libqt5webengine5?  I know that its upstream derives
in part from the Chromium source tree.

Antonio

[1] 
https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop_12.html
[2] https://security.archlinux.org/CVE-2021-21193
[3] https://crbug.com/1186287

Attachment: OpenPGP_0xB01C53D5DED4A4EE.asc
Description: application/pgp-keys

Attachment: OpenPGP_signature
Description: OpenPGP digital signature

  • Bug#985142: chromium: CVE-2021-21193 (RCE) in Blink Antonio Russo

Reply via email to