Debian dsa-6316:chromium - 安全更新

critical Nessus 插件 ID 318078

语言:

简介

远程 Debian 主机上缺少一个或多个与安全相关的更新。

描述

远程 Debian 12/13 主机上安装的多个程序包受到 dsa-6316 公告中提及的多个漏洞影响。

- ------------------------------------------------------------------------- Debian 安全公告 DSA-6316-1 [email protected] https://www.debian.org/security/Andres Salomon 2026 年 5 月 31 日https://www.debian.org/security/faq
- -------------------------------------------------------------------------

程序包:chromium CVE ID:CVE-2026-9872 CVE-2026-9873 CVE-2026-9874 CVE-2026-9875 CVE-2026-9876 CVE-2026-9877 CVE-2026-9878 CVE-2026-9879 CVE-2026-9880 CVE-2026-9881 CVE-2026-9882 CVE-2026-9883 CVE-2026-9884 CVE-2026-9885 CVE-2026-9886 CVE-2026-9887 CVE-2026-9888 CVE-2026-9889 CVE-2026-9890 CVE-2026-9891 CVE-2026-9892 CVE-2026-9893 CVE-2026-9894 CVE-2026-9895 CVE-2026-9896 CVE-2026-9897 CVE-2026-9898 CVE-2026-9899 CVE-2026-9900 CVE-2026-9901 CVE-2026-9902 CVE-2026-9903 CVE-2026-9904 CVE-2026-9905 CVE-2026-9906 CVE-2026-9907 CVE-2026-9908 CVE-2026-9909 CVE-2026-9910 CVE-2026-9911 CVE-2026-9912 CVE-2026-9913 CVE-2026-9914 CVE-2026-9915 CVE-2026-9916 CVE-2026-9917 CVE-2026-9918 CVE-2026-9919 CVE-2026-9920 CVE-2026-9921 CVE-2026-9922 CVE-2026-9923 CVE-2026-9924 CVE-2026-9925 CVE-2026-9926 CVE-2026-9927 CVE-2026-9928 CVE-2026-9929 CVE-2026-9930 CVE-2026-9931 CVE-2026-9932 CVE-2026-9933 CVE-2026-9934 CVE-2026-9935 CVE-2026-9936 CVE-2026-9937 CVE-2026-9938 CVE-2026-9939 CVE-2026-9940 CVE-2026-9941 CVE-2026-9942 CVE-2026-9943 CVE-2026-9944 CVE-2026-9945 CVE-2026-9946 CVE-2026-9947 CVE-2026-9948 CVE-2026-9949 CVE-2026-9950 CVE-2026-9951 CVE-2026-9952 CVE-2026-9953 CVE-2026-9954 CVE-2026-9955 CVE-2026-9956 CVE-2026-9957 CVE-2026-9958 CVE-2026-9959 CVE-2026-9960 CVE-2026-9961 CVE-2026-9962 CVE-2026-9963 CVE-2026-9964 CVE-2026-9965 CVE-2026-9966 CVE-2026-9967 CVE-2026-9968 CVE-2026-9969 CVE-2026-9970 CVE-2026-9971 CVE-2026-9972 CVE-2026-9973 CVE-2026-9974 CVE-2026-9975 CVE-2026-9976 CVE-2026-9977 CVE-2026-9978 CVE-2026-9979 CVE-2026-9980 CVE-2026-9981 CVE-2026-9982 CVE-2026-9983 CVE-2026-9984 CVE-2026-9985 CVE-2026-9986 CVE-2026-9987 CVE-2026-9988 CVE-2026-9989 CVE-2026-9990 CVE-2026-9991 CVE-2026-9992 CVE-2026-9993 CVE-2026-9994 CVE-2026-9995 CVE-2026-9996 CVE-2026-9997 CVE-2026-9998 CVE-2026-9999 CVE-2026-10000 CVE-2026-10001 CVE-2026-10002 CVE-2026-10003 CVE-2026-10004 CVE-2026-10005 CVE-2026-10006 CVE-2026-10007 CVE-2026-10008 CVE-2026-10009 CVE-2026-10010 CVE-2026-10011 CVE-2026-10012 CVE-2026-10013 CVE-2026-10014 CVE-2026-10015 CVE-2026-10016 CVE-2026-10017 CVE-2026-10018 CVE-2026-10019 CVE-2026-10020 CVE-2026-10021 CVE-2026-10022

在 Chromium 中发现多个安全问题,这些问题可能会造成任意代码执行、拒绝服务或信息泄露。

对于旧稳定发行版本 (bookworm),已在 148.0.7778.215-1~deb12u1 版本中修复这些问题。

对于稳定发行版本 (trixie),已在 148.0.7778.215-1~deb13u1 版本中修复这些问题。

我们建议您升级 chromium 程序包。

如需了解 chromium 的详细安全状态,请参阅其安全跟踪页面:
https://security-tracker.debian.org/tracker/chromium

有关 Debian 安全公告、如何将这些更新应用到系统以及常见问题解答的更多信息,请访问以下网址:https://www.debian.org/security/

邮件列表:[email protected]

Tenable 已直接从 Debian 安全公告中提取上述描述块。

请注意,Nessus 尚未测试这些问题,而是只依据应用程序自我报告的版本号进行判断。

解决方案

升级 chromium 程序包。

另见

https://security-tracker.debian.org/tracker/source-package/chromium

https://security-tracker.debian.org/tracker/CVE-2026-10000

https://security-tracker.debian.org/tracker/CVE-2026-10001

https://security-tracker.debian.org/tracker/CVE-2026-10002

https://security-tracker.debian.org/tracker/CVE-2026-10003

https://security-tracker.debian.org/tracker/CVE-2026-10004

https://security-tracker.debian.org/tracker/CVE-2026-10005

https://security-tracker.debian.org/tracker/CVE-2026-10006

https://security-tracker.debian.org/tracker/CVE-2026-10007

https://security-tracker.debian.org/tracker/CVE-2026-10008

https://security-tracker.debian.org/tracker/CVE-2026-10009

https://security-tracker.debian.org/tracker/CVE-2026-10010

https://security-tracker.debian.org/tracker/CVE-2026-10011

https://security-tracker.debian.org/tracker/CVE-2026-10012

https://security-tracker.debian.org/tracker/CVE-2026-10013

https://security-tracker.debian.org/tracker/CVE-2026-10014

https://security-tracker.debian.org/tracker/CVE-2026-10015

https://security-tracker.debian.org/tracker/CVE-2026-10016

https://security-tracker.debian.org/tracker/CVE-2026-10017

https://security-tracker.debian.org/tracker/CVE-2026-10018

https://security-tracker.debian.org/tracker/CVE-2026-10019

https://security-tracker.debian.org/tracker/CVE-2026-10020

https://security-tracker.debian.org/tracker/CVE-2026-10021

https://security-tracker.debian.org/tracker/CVE-2026-10022

https://security-tracker.debian.org/tracker/CVE-2026-9872

https://security-tracker.debian.org/tracker/CVE-2026-9873

https://security-tracker.debian.org/tracker/CVE-2026-9874

https://security-tracker.debian.org/tracker/CVE-2026-9875

https://security-tracker.debian.org/tracker/CVE-2026-9876

https://security-tracker.debian.org/tracker/CVE-2026-9877

https://security-tracker.debian.org/tracker/CVE-2026-9878

https://security-tracker.debian.org/tracker/CVE-2026-9879

https://security-tracker.debian.org/tracker/CVE-2026-9880

https://security-tracker.debian.org/tracker/CVE-2026-9881

https://security-tracker.debian.org/tracker/CVE-2026-9882

https://security-tracker.debian.org/tracker/CVE-2026-9883

https://security-tracker.debian.org/tracker/CVE-2026-9884

https://security-tracker.debian.org/tracker/CVE-2026-9885

https://security-tracker.debian.org/tracker/CVE-2026-9886

https://security-tracker.debian.org/tracker/CVE-2026-9887

https://security-tracker.debian.org/tracker/CVE-2026-9888

https://security-tracker.debian.org/tracker/CVE-2026-9889

https://security-tracker.debian.org/tracker/CVE-2026-9890

https://security-tracker.debian.org/tracker/CVE-2026-9891

https://security-tracker.debian.org/tracker/CVE-2026-9892

https://security-tracker.debian.org/tracker/CVE-2026-9893

https://security-tracker.debian.org/tracker/CVE-2026-9894

https://security-tracker.debian.org/tracker/CVE-2026-9895

https://security-tracker.debian.org/tracker/CVE-2026-9896

https://security-tracker.debian.org/tracker/CVE-2026-9897

https://security-tracker.debian.org/tracker/CVE-2026-9898

https://security-tracker.debian.org/tracker/CVE-2026-9899

https://security-tracker.debian.org/tracker/CVE-2026-9900

https://security-tracker.debian.org/tracker/CVE-2026-9901

https://security-tracker.debian.org/tracker/CVE-2026-9902

https://security-tracker.debian.org/tracker/CVE-2026-9903

https://security-tracker.debian.org/tracker/CVE-2026-9904

https://security-tracker.debian.org/tracker/CVE-2026-9905

https://security-tracker.debian.org/tracker/CVE-2026-9906

https://security-tracker.debian.org/tracker/CVE-2026-9907

https://security-tracker.debian.org/tracker/CVE-2026-9908

https://security-tracker.debian.org/tracker/CVE-2026-9909

https://security-tracker.debian.org/tracker/CVE-2026-9910

https://security-tracker.debian.org/tracker/CVE-2026-9911

https://security-tracker.debian.org/tracker/CVE-2026-9912

https://security-tracker.debian.org/tracker/CVE-2026-9913

https://security-tracker.debian.org/tracker/CVE-2026-9914

https://security-tracker.debian.org/tracker/CVE-2026-9915

https://security-tracker.debian.org/tracker/CVE-2026-9916

https://security-tracker.debian.org/tracker/CVE-2026-9917

https://security-tracker.debian.org/tracker/CVE-2026-9918

https://security-tracker.debian.org/tracker/CVE-2026-9919

https://security-tracker.debian.org/tracker/CVE-2026-9920

https://security-tracker.debian.org/tracker/CVE-2026-9921

https://security-tracker.debian.org/tracker/CVE-2026-9922

https://security-tracker.debian.org/tracker/CVE-2026-9923

https://security-tracker.debian.org/tracker/CVE-2026-9924

https://security-tracker.debian.org/tracker/CVE-2026-9925

https://security-tracker.debian.org/tracker/CVE-2026-9926

https://security-tracker.debian.org/tracker/CVE-2026-9927

https://security-tracker.debian.org/tracker/CVE-2026-9928

https://security-tracker.debian.org/tracker/CVE-2026-9929

https://security-tracker.debian.org/tracker/CVE-2026-9930

https://security-tracker.debian.org/tracker/CVE-2026-9931

https://security-tracker.debian.org/tracker/CVE-2026-9932

https://security-tracker.debian.org/tracker/CVE-2026-9933

https://security-tracker.debian.org/tracker/CVE-2026-9934

https://security-tracker.debian.org/tracker/CVE-2026-9935

https://security-tracker.debian.org/tracker/CVE-2026-9936

https://security-tracker.debian.org/tracker/CVE-2026-9937

https://security-tracker.debian.org/tracker/CVE-2026-9938

https://security-tracker.debian.org/tracker/CVE-2026-9939

https://security-tracker.debian.org/tracker/CVE-2026-9940

https://security-tracker.debian.org/tracker/CVE-2026-9941

https://security-tracker.debian.org/tracker/CVE-2026-9942

https://security-tracker.debian.org/tracker/CVE-2026-9943

https://security-tracker.debian.org/tracker/CVE-2026-9944

https://security-tracker.debian.org/tracker/CVE-2026-9945

https://security-tracker.debian.org/tracker/CVE-2026-9946

https://security-tracker.debian.org/tracker/CVE-2026-9947

https://security-tracker.debian.org/tracker/CVE-2026-9948

https://security-tracker.debian.org/tracker/CVE-2026-9949

https://security-tracker.debian.org/tracker/CVE-2026-9950

https://security-tracker.debian.org/tracker/CVE-2026-9951

https://security-tracker.debian.org/tracker/CVE-2026-9952

https://security-tracker.debian.org/tracker/CVE-2026-9953

https://security-tracker.debian.org/tracker/CVE-2026-9954

https://security-tracker.debian.org/tracker/CVE-2026-9955

https://security-tracker.debian.org/tracker/CVE-2026-9956

https://security-tracker.debian.org/tracker/CVE-2026-9957

https://security-tracker.debian.org/tracker/CVE-2026-9958

https://security-tracker.debian.org/tracker/CVE-2026-9959

https://security-tracker.debian.org/tracker/CVE-2026-9960

https://security-tracker.debian.org/tracker/CVE-2026-9961

https://security-tracker.debian.org/tracker/CVE-2026-9962

https://security-tracker.debian.org/tracker/CVE-2026-9963

https://security-tracker.debian.org/tracker/CVE-2026-9964

https://security-tracker.debian.org/tracker/CVE-2026-9965

https://security-tracker.debian.org/tracker/CVE-2026-9966

https://security-tracker.debian.org/tracker/CVE-2026-9967

https://security-tracker.debian.org/tracker/CVE-2026-9968

https://security-tracker.debian.org/tracker/CVE-2026-9969

https://security-tracker.debian.org/tracker/CVE-2026-9970

https://security-tracker.debian.org/tracker/CVE-2026-9971

https://security-tracker.debian.org/tracker/CVE-2026-9972

https://security-tracker.debian.org/tracker/CVE-2026-9973

https://security-tracker.debian.org/tracker/CVE-2026-9974

https://security-tracker.debian.org/tracker/CVE-2026-9975

https://security-tracker.debian.org/tracker/CVE-2026-9976

https://security-tracker.debian.org/tracker/CVE-2026-9977

https://security-tracker.debian.org/tracker/CVE-2026-9978

https://security-tracker.debian.org/tracker/CVE-2026-9979

https://security-tracker.debian.org/tracker/CVE-2026-9980

https://security-tracker.debian.org/tracker/CVE-2026-9981

https://security-tracker.debian.org/tracker/CVE-2026-9982

https://security-tracker.debian.org/tracker/CVE-2026-9983

https://security-tracker.debian.org/tracker/CVE-2026-9984

https://security-tracker.debian.org/tracker/CVE-2026-9985

https://security-tracker.debian.org/tracker/CVE-2026-9986

https://security-tracker.debian.org/tracker/CVE-2026-9987

https://security-tracker.debian.org/tracker/CVE-2026-9988

https://security-tracker.debian.org/tracker/CVE-2026-9989

https://security-tracker.debian.org/tracker/CVE-2026-9990

https://security-tracker.debian.org/tracker/CVE-2026-9991

https://security-tracker.debian.org/tracker/CVE-2026-9992

https://security-tracker.debian.org/tracker/CVE-2026-9993

https://security-tracker.debian.org/tracker/CVE-2026-9994

https://security-tracker.debian.org/tracker/CVE-2026-9995

https://security-tracker.debian.org/tracker/CVE-2026-9996

https://security-tracker.debian.org/tracker/CVE-2026-9997

https://security-tracker.debian.org/tracker/CVE-2026-9998

https://security-tracker.debian.org/tracker/CVE-2026-9999

https://packages.debian.org/source/bookworm/chromium

https://packages.debian.org/source/trixie/chromium

插件详情

严重性: Critical

ID: 318078

文件名: debian_DSA-6316.nasl

版本: 1.1

类型: Local

代理: unix

发布时间: 2026/6/1

最近更新时间: 2026/6/1

支持的传感器: Nessus Agent, Continuous Assessment, Nessus

风险信息

VPR

风险因素: Critical

分数: 9.2

CVSS v2

风险因素: Critical

基本分数: 10

时间分数: 7.4

矢量: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS 分数来源: CVE-2026-9887

CVSS v3

风险因素: Critical

基本分数: 9.6

时间分数: 8.3

矢量: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

时间矢量: CVSS:3.0/E:U/RL:O/RC:C

CVSS 分数来源: CVE-2026-9874

漏洞信息

CPE: p-cpe:/a:debian:debian_linux:chromium-common, p-cpe:/a:debian:debian_linux:chromium-l10n, p-cpe:/a:debian:debian_linux:chromium-shell, p-cpe:/a:debian:debian_linux:chromium, cpe:/o:debian:debian_linux:12.0, p-cpe:/a:debian:debian_linux:chromium-headless-shell, p-cpe:/a:debian:debian_linux:chromium-sandbox, p-cpe:/a:debian:debian_linux:chromium-driver, cpe:/o:debian:debian_linux:13.0

必需的 KB 项: Host/local_checks_enabled, Host/Debian/release, Host/Debian/dpkg-l

易利用性: No known exploits are available

补丁发布日期: 2026/5/31

漏洞发布日期: 2026/5/27

参考资料信息

CVE: CVE-2026-10000, CVE-2026-10001, CVE-2026-10002, CVE-2026-10003, CVE-2026-10004, CVE-2026-10005, CVE-2026-10006, CVE-2026-10007, CVE-2026-10008, CVE-2026-10009, CVE-2026-10010, CVE-2026-10011, CVE-2026-10012, CVE-2026-10013, CVE-2026-10014, CVE-2026-10015, CVE-2026-10016, CVE-2026-10017, CVE-2026-10018, CVE-2026-10019, CVE-2026-10020, CVE-2026-10021, CVE-2026-10022, CVE-2026-9872, CVE-2026-9873, CVE-2026-9874, CVE-2026-9875, CVE-2026-9876, CVE-2026-9877, CVE-2026-9878, CVE-2026-9879, CVE-2026-9880, CVE-2026-9881, CVE-2026-9882, CVE-2026-9883, CVE-2026-9884, CVE-2026-9885, CVE-2026-9886, CVE-2026-9887, CVE-2026-9888, CVE-2026-9889, CVE-2026-9890, CVE-2026-9891, CVE-2026-9892, CVE-2026-9893, CVE-2026-9894, CVE-2026-9895, CVE-2026-9896, CVE-2026-9897, CVE-2026-9898, CVE-2026-9899, CVE-2026-9900, CVE-2026-9901, CVE-2026-9902, CVE-2026-9903, CVE-2026-9904, CVE-2026-9905, CVE-2026-9906, CVE-2026-9907, CVE-2026-9908, CVE-2026-9909, CVE-2026-9910, CVE-2026-9911, CVE-2026-9912, CVE-2026-9913, CVE-2026-9914, CVE-2026-9915, CVE-2026-9916, CVE-2026-9917, CVE-2026-9918, CVE-2026-9919, CVE-2026-9920, CVE-2026-9921, CVE-2026-9922, CVE-2026-9923, CVE-2026-9924, CVE-2026-9925, CVE-2026-9926, CVE-2026-9927, CVE-2026-9928, CVE-2026-9929, CVE-2026-9930, CVE-2026-9931, CVE-2026-9932, CVE-2026-9933, CVE-2026-9934, CVE-2026-9935, CVE-2026-9936, CVE-2026-9937, CVE-2026-9938, CVE-2026-9939, CVE-2026-9940, CVE-2026-9941, CVE-2026-9942, CVE-2026-9943, CVE-2026-9944, CVE-2026-9945, CVE-2026-9946, CVE-2026-9947, CVE-2026-9948, CVE-2026-9949, CVE-2026-9950, CVE-2026-9951, CVE-2026-9952, CVE-2026-9953, CVE-2026-9954, CVE-2026-9955, CVE-2026-9956, CVE-2026-9957, CVE-2026-9958, CVE-2026-9959, CVE-2026-9960, CVE-2026-9961, CVE-2026-9962, CVE-2026-9963, CVE-2026-9964, CVE-2026-9965, CVE-2026-9966, CVE-2026-9967, CVE-2026-9968, CVE-2026-9969, CVE-2026-9970, CVE-2026-9971, CVE-2026-9972, CVE-2026-9973, CVE-2026-9974, CVE-2026-9975, CVE-2026-9976, CVE-2026-9977, CVE-2026-9978, CVE-2026-9979, CVE-2026-9980, CVE-2026-9981, CVE-2026-9982, CVE-2026-9983, CVE-2026-9984, CVE-2026-9985, CVE-2026-9986, CVE-2026-9987, CVE-2026-9988, CVE-2026-9989, CVE-2026-9990, CVE-2026-9991, CVE-2026-9992, CVE-2026-9993, CVE-2026-9994, CVE-2026-9995, CVE-2026-9996, CVE-2026-9997, CVE-2026-9998, CVE-2026-9999