Log

AVG-2247 created at 03 Aug 2021 07:31:49
Packages
+ vivaldi
Issues
+ CVE-2021-30590
+ CVE-2021-30591
+ CVE-2021-30592
+ CVE-2021-30593
+ CVE-2021-30594
+ CVE-2021-30596
+ CVE-2021-30597
Status
+ Vulnerable
Severity
+ High
Affected
+ 4.1.2369.11-1
Fixed
Ticket
Advisory qualified
+ Yes
References
+ https://vivaldi.com/blog/desktop/vivaldi-4-1-rc-1-desktop/
Notes
+ Vivaldi version 4.1.2369.11 is based on Chromium version 92.0.4515.126 according to the reference.
AVG-2246 created at 03 Aug 2021 07:30:53
Packages
+ chromium
Issues
+ CVE-2021-30590
+ CVE-2021-30591
+ CVE-2021-30592
+ CVE-2021-30593
+ CVE-2021-30594
+ CVE-2021-30596
+ CVE-2021-30597
Status
+ Fixed
Severity
+ High
Affected
+ 92.0.4515.107-3
Fixed
+ 92.0.4515.131-1
Ticket
Advisory qualified
+ Yes
References
Notes
CVE-2021-30597 created at 03 Aug 2021 07:29:14
Severity
+ Medium
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A use after free security issue has been found in the Browser UI component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1232617
Notes
CVE-2021-30596 created at 03 Aug 2021 07:29:14
Severity
+ Medium
Remote
+ Remote
Type
+ Content spoofing
Description
+ An incorrect security UI security issue has been found in the Navigation component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1214481
Notes
CVE-2021-30594 created at 03 Aug 2021 07:29:14
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A use after free security issue has been found in the Page Info UI component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1218468
Notes
CVE-2021-30593 created at 03 Aug 2021 07:29:14
Severity
+ High
Remote
+ Remote
Type
+ Information disclosure
Description
+ An out of bounds read security issue has been found in the Tab Strip component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1209616
Notes
CVE-2021-30592 created at 03 Aug 2021 07:29:14
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ An out of bounds write security issue has been found in the Tab Groups component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1209469
Notes
CVE-2021-30591 created at 03 Aug 2021 07:29:13
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A use after free security issue has been found in the File System API component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1229298
Notes
CVE-2021-30590 created at 03 Aug 2021 07:29:13
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A heap buffer overflow security issue has been found in the Bookmarks component of the Chromium browser engine before version 92.0.4515.131.
References
+ https://chromereleases.googleblog.com/2021/08/the-stable-channel-has-been-updated-to.html
+ https://crbug.com/1227777
Notes
AVG-2230 edited at 02 Aug 2021 14:47:40
Status
- Vulnerable
+ Testing
Fixed
+ 1:7.6.0-1