CVE-2023-4863

Source
https://nvd.nist.gov/vuln/detail/CVE-2023-4863
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-4863.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2023-4863
Aliases
Related
Published
2023-09-12T15:15:24Z
Modified
2024-10-12T11:10:38.142094Z
Severity
  • 8.8 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)

References

Affected packages

Alpine:v3.15 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.2-r2

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.2-r1

Alpine:v3.16 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.3-r2

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.3-r0
1.2.3-r1

Alpine:v3.17 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.4-r3

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.3-r0
1.2.4-r0
1.2.4-r1
1.2.4-r2

Alpine:v3.18 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.1-r1

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.3-r0
1.2.4-r0
1.2.4-r1
1.3.0-r0
1.3.0-r1
1.3.0-r2
1.3.1-r0

Alpine:v3.19 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.1-r1

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.3-r0
1.2.4-r0
1.2.4-r1
1.3.0-r0
1.3.0-r1
1.3.0-r2
1.3.0-r3
1.3.1-r0

Alpine:v3.20 / libwebp

Package

Name
libwebp
Purl
pkg:apk/alpine/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.3.1-r1

Affected versions

0.*

0.1.2-r0
0.1.2-r1
0.1.3-r0
0.1.99-r0
0.2.0-r0
0.2.1-r0
0.3.0-r0
0.3.1-r0
0.3.1-r1
0.4.0-r1
0.4.1-r0
0.4.2-r0
0.4.3-r0
0.4.4-r0
0.5.0-r0
0.5.1-r0
0.5.2-r0
0.6.0-r0
0.6.0-r1
0.6.1-r0

1.*

1.0.0-r0
1.0.1-r0
1.0.2-r0
1.0.3-r0
1.1.0-r0
1.2.0-r0
1.2.0-r1
1.2.0-r2
1.2.1-r0
1.2.2-r0
1.2.3-r0
1.2.4-r0
1.2.4-r1
1.3.0-r0
1.3.0-r1
1.3.0-r2
1.3.0-r3
1.3.1-r0

Debian:11 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
117.0.5938.62-1

Affected versions

90.*

90.0.4430.212-1

93.*

93.0.4577.82-1

97.*

97.0.4692.71-0.1~deb11u1
97.0.4692.71-0.1
97.0.4692.99-1~deb11u1
97.0.4692.99-1~deb11u2
97.0.4692.99-1

98.*

98.0.4758.80-1~deb11u1
98.0.4758.80-1
98.0.4758.102-1~deb11u1
98.0.4758.102-1

99.*

99.0.4818.0-0.1
99.0.4844.51-1~deb11u1
99.0.4844.51-1
99.0.4844.51-2
99.0.4844.74-1~deb11u1
99.0.4844.74-1
99.0.4844.84-1~deb11u1
99.0.4844.84-1

100.*

100.0.4896.60-1~deb11u1
100.0.4896.60-1
100.0.4896.75-1~deb11u1
100.0.4896.75-1
100.0.4896.88-1~deb11u1
100.0.4896.88-1
100.0.4896.127-1~deb11u1
100.0.4896.127-1

101.*

101.0.4951.41-1~deb11u1
101.0.4951.41-1
101.0.4951.41-2
101.0.4951.54-1
101.0.4951.64-1~deb11u1
101.0.4951.64-1

102.*

102.0.5005.61-1~deb11u1
102.0.5005.61-1
102.0.5005.115-1~deb11u1
102.0.5005.115-1

103.*

103.0.5060.53-1~deb11u1
103.0.5060.53-1
103.0.5060.114-1~deb11u1
103.0.5060.114-1
103.0.5060.134-1~deb11u1
103.0.5060.134-1

104.*

104.0.5112.79-1~deb11u1
104.0.5112.79-1
104.0.5112.101-1~deb11u1
104.0.5112.101-1

105.*

105.0.5195.52-1~deb11u1
105.0.5195.52-1
105.0.5195.102-1~deb11u1
105.0.5195.102-1
105.0.5195.125-1~deb11u1
105.0.5195.125-1

106.*

106.0.5249.61-1~deb11u1
106.0.5249.61-1
106.0.5249.91-1~deb11u1
106.0.5249.91-1
106.0.5249.103-1
106.0.5249.103-2
106.0.5249.119-1~deb11u1
106.0.5249.119-1

107.*

107.0.5304.68-1~deb11u1
107.0.5304.68-1
107.0.5304.87-1~deb11u1
107.0.5304.87-1
107.0.5304.110-1~deb11u1
107.0.5304.110-1
107.0.5304.110-2
107.0.5304.121-1~deb11u1
107.0.5304.121-1

108.*

108.0.5359.71-1
108.0.5359.71-2~deb11u1
108.0.5359.71-2
108.0.5359.94-1~deb11u1
108.0.5359.94-1
108.0.5359.124-1~deb11u1
108.0.5359.124-1

109.*

109.0.5414.74-1
109.0.5414.74-2~deb11u1
109.0.5414.74-2
109.0.5414.119-1~deb11u1
109.0.5414.119-1

110.*

110.0.5481.77-1~deb11u1
110.0.5481.77-1
110.0.5481.77-2
110.0.5481.177-1~deb11u1
110.0.5481.177-1

111.*

111.0.5563.64-1~deb11u1
111.0.5563.64-1
111.0.5563.110-1~deb11u1
111.0.5563.110-1

112.*

112.0.5615.49-1
112.0.5615.49-2~deb11u1
112.0.5615.49-2~deb11u2
112.0.5615.49-2
112.0.5615.121-1~deb11u1
112.0.5615.121-1
112.0.5615.138-1~deb11u1
112.0.5615.138-1

113.*

113.0.5672.63-1~deb11u1
113.0.5672.63-1
113.0.5672.63-2
113.0.5672.126-1~deb11u1
113.0.5672.126-1

114.*

114.0.5735.90-1
114.0.5735.90-2~deb11u1
114.0.5735.90-2~deb12u1
114.0.5735.90-2
114.0.5735.106-1~deb11u1
114.0.5735.106-1~deb12u1
114.0.5735.106-1
114.0.5735.133-1~deb11u1
114.0.5735.133-1~deb12u1
114.0.5735.133-1
114.0.5735.198-1~deb11u1
114.0.5735.198-1~deb12u1
114.0.5735.198-1

115.*

115.0.5790.98-1~deb11u1
115.0.5790.98-1~deb12u1
115.0.5790.98-1
115.0.5790.98-2
115.0.5790.102-1
115.0.5790.102-2
115.0.5790.170-1~deb11u1
115.0.5790.170-1~deb12u1
115.0.5790.170-1

116.*

116.0.5845.96-1~deb11u1
116.0.5845.96-1~deb12u1
116.0.5845.96-1
116.0.5845.96-2
116.0.5845.110-1~deb11u1
116.0.5845.110-1~deb12u1
116.0.5845.110-1
116.0.5845.110-2
116.0.5845.140-1~deb11u1
116.0.5845.140-1~deb12u1
116.0.5845.140-1
116.0.5845.180-1~deb11u1
116.0.5845.180-1~deb12u1
116.0.5845.180-1

117.*

117.0.5938.62-1~deb11u1
117.0.5938.62-1~deb12u1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:12 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
117.0.5938.62-1

Affected versions

113.*

113.0.5672.126-1

114.*

114.0.5735.90-1
114.0.5735.90-2~deb11u1
114.0.5735.90-2~deb12u1
114.0.5735.90-2
114.0.5735.106-1~deb11u1
114.0.5735.106-1~deb12u1
114.0.5735.106-1
114.0.5735.133-1~deb11u1
114.0.5735.133-1~deb12u1
114.0.5735.133-1
114.0.5735.198-1~deb11u1
114.0.5735.198-1~deb12u1
114.0.5735.198-1

115.*

115.0.5790.98-1~deb11u1
115.0.5790.98-1~deb12u1
115.0.5790.98-1
115.0.5790.98-2
115.0.5790.102-1
115.0.5790.102-2
115.0.5790.170-1~deb11u1
115.0.5790.170-1~deb12u1
115.0.5790.170-1

116.*

116.0.5845.96-1~deb11u1
116.0.5845.96-1~deb12u1
116.0.5845.96-1
116.0.5845.96-2
116.0.5845.110-1~deb11u1
116.0.5845.110-1~deb12u1
116.0.5845.110-1
116.0.5845.110-2
116.0.5845.140-1~deb11u1
116.0.5845.140-1~deb12u1
116.0.5845.140-1
116.0.5845.180-1~deb11u1
116.0.5845.180-1~deb12u1
116.0.5845.180-1

117.*

117.0.5938.62-1~deb11u1
117.0.5938.62-1~deb12u1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:13 / chromium

Package

Name
chromium
Purl
pkg:deb/debian/chromium?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
117.0.5938.62-1

Affected versions

113.*

113.0.5672.126-1

114.*

114.0.5735.90-1
114.0.5735.90-2~deb11u1
114.0.5735.90-2~deb12u1
114.0.5735.90-2
114.0.5735.106-1~deb11u1
114.0.5735.106-1~deb12u1
114.0.5735.106-1
114.0.5735.133-1~deb11u1
114.0.5735.133-1~deb12u1
114.0.5735.133-1
114.0.5735.198-1~deb11u1
114.0.5735.198-1~deb12u1
114.0.5735.198-1

115.*

115.0.5790.98-1~deb11u1
115.0.5790.98-1~deb12u1
115.0.5790.98-1
115.0.5790.98-2
115.0.5790.102-1
115.0.5790.102-2
115.0.5790.170-1~deb11u1
115.0.5790.170-1~deb12u1
115.0.5790.170-1

116.*

116.0.5845.96-1~deb11u1
116.0.5845.96-1~deb12u1
116.0.5845.96-1
116.0.5845.96-2
116.0.5845.110-1~deb11u1
116.0.5845.110-1~deb12u1
116.0.5845.110-1
116.0.5845.110-2
116.0.5845.140-1~deb11u1
116.0.5845.140-1~deb12u1
116.0.5845.140-1
116.0.5845.180-1~deb11u1
116.0.5845.180-1~deb12u1
116.0.5845.180-1

117.*

117.0.5938.62-1~deb11u1
117.0.5938.62-1~deb12u1

Ecosystem specific

{
    "urgency": "unimportant"
}

Debian:11 / firefox-esr

Package

Name
firefox-esr
Purl
pkg:deb/debian/firefox-esr?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
102.15.1esr-1~deb11u1

Affected versions

78.*

78.12.0esr-1
78.13.0esr-1~deb9u1
78.13.0esr-1~deb10u1
78.13.0esr-1~deb11u1
78.13.0esr-1
78.14.0esr-1~deb9u1
78.14.0esr-1~deb10u1
78.14.0esr-1~deb11u1
78.14.0esr-1
78.15.0esr-1~deb9u1
78.15.0esr-1~deb10u1
78.15.0esr-1~deb11u1

91.*

91.0esr-1
91.0.1esr-1
91.1.0esr-1
91.2.0esr-1
91.3.0esr-1
91.3.0esr-2
91.4.0esr-1
91.4.1esr-1~deb9u1
91.4.1esr-1~deb11u1
91.5.0esr-1~deb9u1
91.5.0esr-1~deb10u1
91.5.0esr-1~deb11u1
91.5.0esr-1
91.5.1esr-1
91.6.0esr-1~deb9u1
91.6.0esr-1~deb10u1
91.6.0esr-1~deb11u1
91.6.0esr-1
91.6.1esr-1~deb9u1
91.6.1esr-1~deb10u1
91.6.1esr-1~deb11u1
91.6.1esr-1
91.7.0esr-1~deb9u1
91.7.0esr-1~deb10u1
91.7.0esr-1~deb11u1
91.7.0esr-1
91.8.0esr-1~deb9u1
91.8.0esr-1~deb10u1
91.8.0esr-1~deb11u1
91.8.0esr-1
91.9.0esr-1~deb9u1
91.9.0esr-1~deb10u1
91.9.0esr-1~deb11u1
91.9.0esr-1
91.9.1esr-1~deb9u1
91.9.1esr-1~deb10u1
91.9.1esr-1~deb11u1
91.9.1esr-1
91.10.0esr-1~deb9u1
91.10.0esr-1~deb10u1
91.10.0esr-1~deb11u1
91.10.0esr-1
91.11.0esr-1~deb9u1
91.11.0esr-1~deb10u1
91.11.0esr-1~deb11u1
91.11.0esr-1
91.12.0esr-1~deb10u1
91.12.0esr-1~deb11u1
91.12.0esr-1
91.13.0esr-1~deb10u1
91.13.0esr-1~deb11u1

102.*

102.1.0esr-1
102.1.0esr-2
102.2.0esr-1
102.3.0esr-1~deb10u1
102.3.0esr-1~deb10u2
102.3.0esr-1~deb11u1
102.3.0esr-1
102.4.0esr-1~deb10u1
102.4.0esr-1~deb11u1
102.4.0esr-1
102.5.0esr-1~deb10u1
102.5.0esr-1~deb11u1
102.5.0esr-1
102.6.0esr-1~deb10u1
102.6.0esr-1~deb11u1
102.6.0esr-1
102.7.0esr-1~deb10u1
102.7.0esr-1~deb11u1
102.7.0esr-1
102.8.0esr-1~deb10u1
102.8.0esr-1~deb11u1
102.8.0esr-1
102.9.0esr-1~deb10u1
102.9.0esr-1~deb11u1
102.9.0esr-1
102.9.0esr-2
102.10.0esr-1~deb10u1
102.10.0esr-1~deb11u1
102.10.0esr-1
102.11.0esr-1~deb10u1
102.11.0esr-1~deb11u1
102.11.0esr-1
102.12.0esr-1~deb10u1
102.12.0esr-1~deb11u1
102.12.0esr-1~deb12u1
102.12.0esr-1
102.13.0esr-1~deb10u1
102.13.0esr-1~deb11u1
102.13.0esr-1~deb12u1
102.13.0esr-1
102.14.0esr-1~deb10u1
102.14.0esr-1~deb11u1
102.14.0esr-1~deb12u1
102.15.0esr-1~deb10u1
102.15.0esr-1~deb11u1
102.15.0esr-1~deb12u1
102.15.1esr-1~deb10u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / firefox-esr

Package

Name
firefox-esr
Purl
pkg:deb/debian/firefox-esr?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
102.15.1esr-1~deb12u1

Affected versions

102.*

102.11.0esr-1
102.12.0esr-1~deb10u1
102.12.0esr-1~deb11u1
102.12.0esr-1~deb12u1
102.12.0esr-1
102.13.0esr-1~deb10u1
102.13.0esr-1~deb11u1
102.13.0esr-1~deb12u1
102.13.0esr-1
102.14.0esr-1~deb10u1
102.14.0esr-1~deb11u1
102.14.0esr-1~deb12u1
102.15.0esr-1~deb10u1
102.15.0esr-1~deb11u1
102.15.0esr-1~deb12u1
102.15.1esr-1~deb10u1
102.15.1esr-1~deb11u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / firefox-esr

Package

Name
firefox-esr
Purl
pkg:deb/debian/firefox-esr?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
115.2.1esr-1

Affected versions

102.*

102.11.0esr-1
102.12.0esr-1~deb10u1
102.12.0esr-1~deb11u1
102.12.0esr-1~deb12u1
102.12.0esr-1
102.13.0esr-1~deb10u1
102.13.0esr-1~deb11u1
102.13.0esr-1~deb12u1
102.13.0esr-1
102.14.0esr-1~deb10u1
102.14.0esr-1~deb11u1
102.14.0esr-1~deb12u1
102.15.0esr-1~deb10u1
102.15.0esr-1~deb11u1
102.15.0esr-1~deb12u1
102.15.1esr-1~deb10u1
102.15.1esr-1~deb11u1
102.15.1esr-1~deb12u1

115.*

115.0.2esr-1
115.1.0esr-1
115.2.0esr-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / libwebp

Package

Name
libwebp
Purl
pkg:deb/debian/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
0.6.1-2.1+deb11u2

Affected versions

0.*

0.6.1-2.1
0.6.1-2.1+deb11u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / libwebp

Package

Name
libwebp
Purl
pkg:deb/debian/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.4-0.2+deb12u1

Affected versions

1.*

1.2.4-0.2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / libwebp

Package

Name
libwebp
Purl
pkg:deb/debian/libwebp?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1.2.4-0.3

Affected versions

1.*

1.2.4-0.2

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:11 / thunderbird

Package

Name
thunderbird
Purl
pkg:deb/debian/thunderbird?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:102.15.1-1~deb11u1

Affected versions

1:78.*

1:78.12.0-1
1:78.13.0-1~deb9u1
1:78.13.0-1~deb10u1
1:78.13.0-1~deb11u1
1:78.13.0-1
1:78.14.0-1~deb9u1
1:78.14.0-1~deb10u1
1:78.14.0-1~deb11u1
1:78.14.0-1

1:84.*

1:84.0~b3-1

1:85.*

1:85.0~b3-1

1:86.*

1:86.0~b3-1

1:88.*

1:88.0~b2-1

1:89.*

1:89.0~b2-1

1:90.*

1:90.0~b2-1

1:91.*

1:91.0~b1-1
1:91.0~b3-1
1:91.0~b5-1
1:91.0-1
1:91.0.2-1
1:91.1.0-1
1:91.1.1-1
1:91.2.0-1
1:91.2.1-1
1:91.3.0-1
1:91.3.2-1
1:91.4.0-1
1:91.4.1-1~deb9u1
1:91.4.1-1~deb10u1
1:91.4.1-1~deb11u1
1:91.4.1-1
1:91.5.0-1~deb9u1
1:91.5.0-1
1:91.5.0-2~deb10u1
1:91.5.0-2~deb11u1
1:91.5.0-2
1:91.5.1-1
1:91.6.0-1~deb9u1
1:91.6.0-1~deb10u1
1:91.6.0-1~deb11u1
1:91.6.0-1
1:91.6.1-1~deb9u1
1:91.6.1-1~deb10u1
1:91.6.1-1~deb11u1
1:91.6.1-1
1:91.6.2-1~deb9u1
1:91.6.2-1~deb10u1
1:91.6.2-1~deb11u1
1:91.6.2-1
1:91.7.0-1
1:91.7.0-2~deb9u1
1:91.7.0-2~deb10u1
1:91.7.0-2~deb11u1
1:91.7.0-2
1:91.8.0-1~deb9u1
1:91.8.0-1~deb10u1
1:91.8.0-1~deb11u1
1:91.8.0-1
1:91.8.1-1
1:91.9.0-1~deb9u1
1:91.9.0-1~deb10u1
1:91.9.0-1~deb11u1
1:91.9.0-1
1:91.10.0-1~deb9u1
1:91.10.0-1~deb10u1
1:91.10.0-1~deb11u1
1:91.10.0-1
1:91.11.0-1~deb10u1
1:91.11.0-1~deb11u1
1:91.11.0-1
1:91.12.0-1~deb10u1
1:91.12.0-1~deb11u1
1:91.13.0-1~deb10u1
1:91.13.0-1~deb11u1

1:102.*

1:102.0~b4-1
1:102.0~b7-1
1:102.0.1-1
1:102.0.2-1
1:102.1.0-1
1:102.1.1-1
1:102.1.2-1
1:102.2.0-1
1:102.2.1-1
1:102.2.2-1
1:102.3.0-1~deb10u1
1:102.3.0-1~deb11u1
1:102.3.0-1
1:102.3.1-1
1:102.3.2-1
1:102.3.3-1
1:102.4.0-1~deb10u1
1:102.4.0-1~deb11u1
1:102.4.0-1
1:102.4.1-1
1:102.5.0-1~deb10u1
1:102.5.0-1~deb11u1
1:102.5.0-1
1:102.5.1-1
1:102.6.0-1~deb10u1
1:102.6.0-1~deb11u1
1:102.6.0-1
1:102.7.1-1
1:102.7.1+1-1
1:102.7.2-1
1:102.8.0-1~deb10u1
1:102.8.0-1~deb11u1
1:102.8.0-1
1:102.9.0-1~deb10u1
1:102.9.0-1~deb11u1
1:102.9.0-1
1:102.9.1-1
1:102.10.0-1~deb10u1
1:102.10.0-1~deb11u1
1:102.10.0-1
1:102.11.0-1~deb10u1
1:102.11.0-1~deb11u1
1:102.11.0-1
1:102.12.0-1~deb10u1
1:102.12.0-1~deb11u1
1:102.12.0-1~deb12u1
1:102.12.0-1
1:102.13.0-1~deb10u1
1:102.13.0-1~deb11u1
1:102.13.0-1~deb12u1
1:102.13.0-1
1:102.13.1-1~deb10u1
1:102.13.1-1~deb11u1
1:102.13.1-1~deb12u1
1:102.13.1-1
1:102.14.0-1~deb10u1
1:102.14.0-1~deb11u1
1:102.14.0-1~deb12u1
1:102.15.0-1~deb10u1
1:102.15.0-1~deb11u1
1:102.15.0-1~deb12u1
1:102.15.1-1~deb10u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:12 / thunderbird

Package

Name
thunderbird
Purl
pkg:deb/debian/thunderbird?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:102.15.1-1~deb12u1

Affected versions

1:102.*

1:102.11.0-1
1:102.12.0-1~deb10u1
1:102.12.0-1~deb11u1
1:102.12.0-1~deb12u1
1:102.12.0-1
1:102.13.0-1~deb10u1
1:102.13.0-1~deb11u1
1:102.13.0-1~deb12u1
1:102.13.0-1
1:102.13.1-1~deb10u1
1:102.13.1-1~deb11u1
1:102.13.1-1~deb12u1
1:102.13.1-1
1:102.14.0-1~deb10u1
1:102.14.0-1~deb11u1
1:102.14.0-1~deb12u1
1:102.15.0-1~deb10u1
1:102.15.0-1~deb11u1
1:102.15.0-1~deb12u1
1:102.15.1-1~deb10u1
1:102.15.1-1~deb11u1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Debian:13 / thunderbird

Package

Name
thunderbird
Purl
pkg:deb/debian/thunderbird?arch=source

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
1:115.2.2-1

Affected versions

1:102.*

1:102.11.0-1
1:102.12.0-1~deb10u1
1:102.12.0-1~deb11u1
1:102.12.0-1~deb12u1
1:102.12.0-1
1:102.13.0-1~deb10u1
1:102.13.0-1~deb11u1
1:102.13.0-1~deb12u1
1:102.13.0-1
1:102.13.1-1~deb10u1
1:102.13.1-1~deb11u1
1:102.13.1-1~deb12u1
1:102.13.1-1
1:102.14.0-1~deb10u1
1:102.14.0-1~deb11u1
1:102.14.0-1~deb12u1
1:102.15.0-1~deb10u1
1:102.15.0-1~deb11u1
1:102.15.0-1~deb12u1
1:102.15.1-1~deb10u1
1:102.15.1-1~deb11u1
1:102.15.1-1~deb12u1

1:103.*

1:103.0~b5-1

1:104.*

1:104.0~b2-1

1:110.*

1:110.0~b4-1

1:112.*

1:112.0~b1-1

1:113.*

1:113.0~b3-1

1:114.*

1:114.0~b2-1

1:115.*

1:115.0~b4-1
1:115.0~b6-1
1:115.0-1
1:115.0.1-1
1:115.0.1-2
1:115.1.0-1
1:115.1.1-1
1:115.2.0-1

Ecosystem specific

{
    "urgency": "not yet assigned"
}

Git / github.com/webmproject/libwebp

Affected ranges

Type
GIT
Repo
https://github.com/webmproject/libwebp
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v0.*

v0.1.2
v0.1.3
v0.1.99
v0.2.0
v0.2.0-rc1
v0.2.1
v0.3.0
v0.3.0-rc6
v0.3.0-rc7
v0.3.1
v0.3.1-rc1
v0.3.1-rc2
v0.4.0
v0.4.0-rc1
v0.4.1
v0.4.1-rc1
v0.5.0
v0.5.0-rc1
v0.5.1
v0.5.1-rc5
v0.5.2
v0.5.2-rc2
v0.6.0
v0.6.0-rc2
v0.6.0-rc3
v0.6.1
v0.6.1-rc2

v1.*

v1.0.0
v1.0.0-rc1
v1.0.0-rc2
v1.0.0-rc3
v1.0.1
v1.0.1-rc2
v1.0.2
v1.0.2-rc1
v1.0.3
v1.0.3-rc1
v1.1.0
v1.1.0-rc2
v1.2.0
v1.2.0-rc3
v1.2.1
v1.2.1-rc2
v1.2.2
v1.2.2-rc1
v1.2.2-rc2
v1.2.3
v1.2.3-rc1
v1.2.4
v1.3.0
v1.3.0-rc1
v1.3.1
v1.3.1-rc1
v1.3.1-rc2