diff --git a/chromium.advisories.yaml b/chromium.advisories.yaml index 4a59aec66..7e704d22d 100644 --- a/chromium.advisories.yaml +++ b/chromium.advisories.yaml @@ -189,6 +189,16 @@ advisories: type: vulnerable-code-version-not-used note: 'This vulnerability (nickname "CRIME") was disclosed in 2012. Chrome has not been affected since version 21. You can find useful information about this vulnerability here: https://www.imperialviolet.org/2012/09/21/crime.html' + - id: CGA-3m9r-cr59-c74v + aliases: + - CVE-2025-0443 + - GHSA-v6w7-99w8-xfj4 + events: + - timestamp: 2025-01-18T09:16:35Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-3r6q-w9j6-xm3p aliases: - CVE-2024-7971 @@ -253,6 +263,16 @@ advisories: data: fixed-version: 125.0.6422.60-r0 + - id: CGA-4564-wcx4-352g + aliases: + - CVE-2025-0435 + - GHSA-7m93-7r9r-p7jm + events: + - timestamp: 2025-01-18T09:24:19Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-45q2-m4cr-q45h aliases: - CVE-2024-4059 @@ -706,6 +726,16 @@ advisories: type: vulnerability-record-analysis-contested note: The vulnerability does not include sufficient information. It looks like a disagreement around Adobe PDF Javascript restrictions instead of a real secuiry issue. + - id: CGA-7cfh-88gq-mx47 + aliases: + - CVE-2025-0440 + - GHSA-25v3-7r56-53xj + events: + - timestamp: 2025-01-18T09:20:26Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-7cp6-cc3c-pgcj aliases: - CVE-2024-5838 @@ -782,6 +812,16 @@ advisories: data: fixed-version: 129.0.6668.58-r0 + - id: CGA-7qfc-jc9p-wv4q + aliases: + - CVE-2025-0448 + - GHSA-fr5q-g65c-mjcx + events: + - timestamp: 2025-01-18T09:23:00Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-7rq4-5v3g-cfg2 aliases: - CVE-2024-3837 @@ -934,6 +974,16 @@ advisories: data: fixed-version: 128.0.6613.137-r0 + - id: CGA-8wrv-j5wq-9x2f + aliases: + - CVE-2025-0442 + - GHSA-g76w-p5m2-4jvf + events: + - timestamp: 2025-01-18T09:15:18Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-94fj-h4pg-8h3x aliases: - CVE-2024-2176 @@ -1329,6 +1379,16 @@ advisories: data: fixed-version: 130.0.6723.116-r0 + - id: CGA-g5jf-p5mv-9x7r + aliases: + - CVE-2025-0438 + - GHSA-hmr8-hjfx-jp32 + events: + - timestamp: 2025-01-18T09:19:10Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-gm52-6gff-7wjh aliases: - CVE-2024-5841 @@ -1351,6 +1411,16 @@ advisories: data: fixed-version: 126.0.6478.55-r0 + - id: CGA-gpwr-392w-vmwx + aliases: + - CVE-2025-0437 + - GHSA-4353-vp82-4qq4 + events: + - timestamp: 2025-01-18T09:31:09Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-gvvq-38jh-2598 aliases: - CVE-2024-11395 @@ -1863,6 +1933,16 @@ advisories: data: fixed-version: 125.0.6422.60-r0 + - id: CGA-p695-6c66-hr97 + aliases: + - CVE-2025-0436 + - GHSA-ww3g-8h77-wr7v + events: + - timestamp: 2025-01-18T09:27:00Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-p6hq-rr8r-gjcp aliases: - CVE-2024-6101 @@ -1873,6 +1953,16 @@ advisories: data: fixed-version: 126.0.6478.114-r0 + - id: CGA-p6jj-439h-g63p + aliases: + - CVE-2025-0447 + - GHSA-chr7-82mw-8gc7 + events: + - timestamp: 2025-01-18T09:25:39Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-p8h3-75xf-vq3f aliases: - CVE-2024-7966 @@ -2004,6 +2094,16 @@ advisories: data: fixed-version: 126.0.6478.55-r0 + - id: CGA-qhv9-hg5v-34r4 + aliases: + - CVE-2025-0434 + - GHSA-fpmx-pfpg-92xg + events: + - timestamp: 2025-01-18T09:29:46Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-qrww-5xwp-4ch8 aliases: - CVE-2024-4058 @@ -2262,6 +2362,16 @@ advisories: data: fixed-version: 129.0.6668.58-r0 + - id: CGA-vcxw-2hjc-cghf + aliases: + - CVE-2025-0439 + - GHSA-wphw-46wj-2jvh + events: + - timestamp: 2025-01-18T09:28:25Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-vhg8-rvcf-3qh3 aliases: - CVE-2024-5494 @@ -2338,6 +2448,16 @@ advisories: data: fixed-version: 126.0.6478.55-r0 + - id: CGA-vvph-hx2f-53g5 + aliases: + - CVE-2025-0441 + - GHSA-r498-8rcj-p67x + events: + - timestamp: 2025-01-18T09:21:42Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-vw72-7495-5rw5 aliases: - CVE-2024-6776 @@ -2490,6 +2610,16 @@ advisories: data: fixed-version: 125.0.6422.141-r0 + - id: CGA-x4jc-94jw-hjj9 + aliases: + - CVE-2025-0446 + - GHSA-9vwh-r62q-3cgr + events: + - timestamp: 2025-01-18T09:17:52Z + type: fixed + data: + fixed-version: 132.0.6834.83-r0 + - id: CGA-x565-226h-pchv aliases: - CVE-2024-3846