stable

chromium-128.0.6613.137-1.fc40

FEDORA-2024-0a4a65f805 created by than 10 months ago for Fedora 40

update to 128.0.6613.137

  * High CVE-2024-8636: Heap buffer overflow in Skia
  * High CVE-2024-8637: Use after free in Media Router
  * High CVE-2024-8638: Type Confusion in V8
  * High CVE-2024-8639: Use after free in Autofill

How to install

Updates may require up to 24 hours to propagate to mirrors. If the following command doesn't work, please retry later:

sudo dnf upgrade --refresh --advisory=FEDORA-2024-0a4a65f805

This update has been submitted for testing by than.

10 months ago

This update's test gating status has been changed to 'ignored'.

10 months ago

This update has been pushed to testing.

10 months ago
User Icon vtrefny provided feedback 10 months ago
karma

This update has been submitted for stable by bodhi.

10 months ago

This update has been pushed to stable.

10 months ago

Please log in to add feedback.

Metadata
Type
security
Severity
high
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
1
Stable by Time
7 days
Dates
submitted
10 months ago
in testing
10 months ago
in stable
10 months ago
approved
10 months ago
BZ#2311182 CVE-2024-45590 chromium: Denial of Service Vulnerability in body-parser [epel-8]
0
0
BZ#2311196 CVE-2024-45590 chromium: Denial of Service Vulnerability in body-parser [fedora-39]
0
0
BZ#2311225 CVE-2024-45590 chromium: Denial of Service Vulnerability in body-parser [fedora-40]
0
0
BZ#2311373 CVE-2024-43796 chromium: Improper Input Handling in Express Redirects [epel-8]
0
0
BZ#2311378 CVE-2024-43796 chromium: Improper Input Handling in Express Redirects [fedora-39]
0
0
BZ#2311393 CVE-2024-43796 chromium: Improper Input Handling in Express Redirects [fedora-40]
0
0
BZ#2311684 CVE-2024-8636 chromium: Heap buffer overflow in Skia [epel-8]
0
0
BZ#2311685 CVE-2024-8636 chromium: Heap buffer overflow in Skia [fedora-39]
0
0
BZ#2311686 CVE-2024-8636 chromium: Heap buffer overflow in Skia [fedora-40]
0
0
BZ#2311690 CVE-2024-8638 chromium: Type Confusion in V8 in Google Chrome [epel-8]
0
0
BZ#2311692 CVE-2024-8638 chromium: Type Confusion in V8 in Google Chrome [fedora-39]
0
0
BZ#2311693 CVE-2024-8638 chromium: Type Confusion in V8 in Google Chrome [fedora-40]
0
0

Automated Test Results