New issue
Advanced search Search tips
Note: Color blocks (like or ) mean that a user may not be available. Tooltip shows the reason.

Issue 728094 link

Starred by 1 user

Issue metadata

Status: Archived
Owner:
Last visit > 30 days ago
Closed: Jun 2017
Cc:
Components:
EstimatedDays: ----
NextAction: ----
OS: Chrome
Pri: 1
Type: Bug-Security



Sign in to add a comment

CrOS: Vulnerability reported in sys-libs/zlib

Project Member Reported by vomit.go...@appspot.gserviceaccount.com, May 31 2017

Issue description

Automated analysis has detected that the following third party packages have had vulnerabilities publicly reported. 

NOTE: There may be several bugs listed below - in almost all cases, all bugs can be quickly addressed by upgrading to the latest version of the package.

Package Name: sys-libs/zlib
Package Version: [cpe:/a:gnu:zlib:1.2.8]

Advisory: CVE-2016-9840
  Details: https://vomit.googleplex.com/advisory?id=CVE/CVE-2016-9840
  CVSS severity score: 6.8/10.0
  Confidence: high
  Description:

inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
Advisory: CVE-2016-9842
  Details: https://vomit.googleplex.com/advisory?id=CVE/CVE-2016-9842
  CVSS severity score: 6.8/10.0
  Confidence: high
  Description:

The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.


 
Components: OS>Packages
Labels: Security_Severity-High Security_Impact-Stable
Owner: benchan@chromium.org
Status: Assigned (was: Untriaged)
benchan: Looks like you updated zlib a long time ago. Would you happen to be the right owner for these? Feel free to pass it back to me if not.
Project Member

Comment 2 by sheriffbot@chromium.org, Jun 6 2017

Labels: M-59
Project Member

Comment 3 by sheriffbot@chromium.org, Jun 6 2017

Labels: -Pri-2 Pri-1
Cc: vapier@chromium.org benchan@chromium.org
Owner: andreyu@google.com

Comment 5 by andreyu@google.com, Jun 6 2017

Status: Fixed (was: Assigned)
https://chromium-review.googlesource.com/c/520704/

Comment 6 by andreyu@google.com, Jun 6 2017

Labels: Merge-Request-59
Project Member

Comment 7 by sheriffbot@chromium.org, Jun 6 2017

Labels: -Merge-Request-59 Merge-Review-59 Hotlist-Merge-Review
This bug requires manual review: Request affecting a post-stable build
Please contact the milestone owner if you have questions.
Owners: amineer@(Android), cmasso@(iOS), gkihumba@(ChromeOS), Abdul Syed@(Desktop)

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Labels: M-60 Merge-Request-60
off hand, i can't think of places where zlib is used on the system side that is directly exposed to user input, so backporting to M-59 might not be worth the hassle ...

we should do M-60 though.
Project Member

Comment 9 by sheriffbot@chromium.org, Jun 7 2017

Labels: -Restrict-View-SecurityTeam Restrict-View-SecurityNotify
Project Member

Comment 10 by sheriffbot@chromium.org, Jun 7 2017

Labels: -Merge-Request-60 Hotlist-Merge-Approved Merge-Approved-60
Your change meets the bar and is auto-approved for M60. Please go ahead and merge the CL to branch 3112 manually. Please contact milestone owner if you have questions.
Owners: amineer@(Android), cmasso@(iOS), josafat@(ChromeOS), bustamante@(Desktop)

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Labels: Merge-Rejected-59
M59 just went stable. If there's no urgency for this merge, punting it to M60
Project Member

Comment 12 by sheriffbot@chromium.org, Jun 12 2017

This issue has been approved for a merge. Please merge the fix to any appropriate branches as soon as possible!

If all merges have been completed, please remove any remaining Merge-Approved labels from this issue.

Thanks for your time! To disable nags, add the Disable-Nags label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot
Project Member

Comment 13 by sheriffbot@chromium.org, Jun 15 2017

This issue has been approved for a merge. Please merge the fix to any appropriate branches as soon as possible!

If all merges have been completed, please remove any remaining Merge-Approved labels from this issue.

Thanks for your time! To disable nags, add the Disable-Nags label.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Comment 14 by andreyu@google.com, Jun 15 2017

Labels: -Merge-Review-59 -Merge-Approved-60 -Merge-Rejected-59
Labels: -M-59
Project Member

Comment 16 by sheriffbot@chromium.org, Sep 13 2017

Labels: -Restrict-View-SecurityNotify allpublic
This bug has been closed for more than 14 weeks. Removing security view restrictions.

For more details visit https://www.chromium.org/issue-tracking/autotriage - Your friendly Sheriffbot

Comment 17 by dchan@chromium.org, Jan 22 2018

Status: Archived (was: Fixed)

Sign in to add a comment