MGASA-2015-0265

Source
https://advisories.mageia.org/MGASA-2015-0265.html
Import Source
https://advisories.mageia.org/MGASA-2015-0265.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2015-0265
Upstream
  • CVE-2015-1266
  • CVE-2015-1267
  • CVE-2015-1268
  • CVE-2015-1269
Published
2015-07-05T17:22:03Z
Modified
2026-04-16T06:22:37.888819777Z
Summary
Updated chromium-browser package fixes security vulnerability
Details

A scheme validation error in WebUI (CVE-2015-1266).

Two cross-origin bypass issues in Blink (CVE-2015-1267, CVE-2015-1268).

A normalization error in the HSTS/HPKP preload list (CVE-2015-1269).

This update also disables the automatic, silent downloading and installation of "external components" like the hotword extension.

References
Credits

Affected packages

Mageia:4 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-4

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
43.0.2357.130-1.mga4

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0265.json"

Mageia:5 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-5

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
43.0.2357.130-1.mga5

Ecosystem specific

{
    "section": "core"
}

Database specific

source
"https://advisories.mageia.org/MGASA-2015-0265.json"