stable

chromium-119.0.6045.159-2.fc39

FEDORA-2023-9425bb0115 created by than 2 years ago for Fedora 39

update to 119.0.6045.159, upstream security release

  • High CVE-2023-5997, use after free in Garbage Collection
  • High CVE-2023-6112, use after free in Navigation

Fix bz#2240127, audio/video decode issue in chromium

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2023-9425bb0115

This update has been submitted for testing by than.

2 years ago

This update's test gating status has been changed to 'ignored'.

2 years ago

This update has obsoleted chromium-119.0.6045.123-2.fc39, and has inherited its bugs and notes.

2 years ago

than edited this update.

2 years ago

than edited this update.

2 years ago

This update has been pushed to testing.

2 years ago
User Icon nucleo commented & provided feedback 2 years ago
karma

package chromium-119.0.6045.159-1.fc39.x86_64 from updates-testing conflicts with ffmpeg-libs(x86-64) provided by ffmpeg-libs-6.0.1-2.fc39.x86_64

Bodhi is disabling automatic push to stable due to negative karma. The maintainer may push manually if they determine that the issue is not severe.

2 years ago
User Icon nucleo commented & provided feedback 2 years ago

chromium-119.0.6045.123-2.fc39 works fine with ffmpeg-libs-6.0.1-2.fc39.x86_64 which includes first_dts patch

than edited this update.

New build(s):

  • chromium-119.0.6045.159-2.fc39

Removed build(s):

  • chromium-119.0.6045.159-1.fc39

Karma has been reset.

2 years ago

This update has been submitted for testing by than.

2 years ago
User Icon than commented & provided feedback 2 years ago

i updated chromium which should fix the reported issue. Could you please try again?

Thanks

User Icon than commented & provided feedback 2 years ago

Just info, you need to update ffmpeg from rpmfusion testing repo if you have installed ffmpeg from rpmfussion on your machine due to abi change in ffmpeg.

This update has been pushed to testing.

2 years ago

than edited this update.

2 years ago
User Icon nucleo provided feedback 2 years ago
karma

than edited this update.

2 years ago

This update can be pushed to stable now if the maintainer wishes

2 years ago

This update has been submitted for stable by than.

2 years ago
User Icon qoijjj provided feedback 2 years ago
karma
BZ#2250169 Missing security patches from 119.0.6045.159
BZ#2250775 CVE-2023-6112 chromium: chromium-browser: Use after free in Navigation [fedora-all]
BZ#2250777 CVE-2023-5997 chromium: chromium-browser: use-after-free in Garbage Collection [fedora-all]

This update has been pushed to stable.

2 years ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
2
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
disabled
Stable by Time
disabled
Dates
submitted
2 years ago
in testing
2 years ago
in stable
2 years ago
modified
2 years ago
approved
2 years ago
BZ#2240127 Some h.264 mp4s do not play on fedora chromium, while they do on other chromium packages (i.e. rpm build from source, flatpak)
0
0
BZ#2246427 Using this package, the only way to stay relatively current with security patches is to use the rawhide build. All other builds, including from testing, are consistently behind.
0
0
BZ#2250169 Missing security patches from 119.0.6045.159
0
1
BZ#2250775 CVE-2023-6112 chromium: chromium-browser: Use after free in Navigation [fedora-all]
0
1
BZ#2250777 CVE-2023-5997 chromium: chromium-browser: use-after-free in Garbage Collection [fedora-all]
0
1

Automated Test Results