stable

chromium-125.0.6422.76-1.el9

FEDORA-EPEL-2024-3184c14a07 created by than 9 months ago for Fedora EPEL 9

update to 125.0.6422.76

  • High CVE-2024-5157: Use after free in Scheduling
  • High CVE-2024-5158: Type Confusion in V8
  • High CVE-2024-5159: Heap buffer overflow in ANGLE
  • High CVE-2024-5160: Heap buffer overflow in Dawn

update to 125.0.6422.60

  • High CVE-2024-4947: Type Confusion in V8
  • High CVE-2024-4948: Use after free in Dawn
  • Medium CVE-2024-4949: Use after free in V8
  • Low CVE-2024-4950: Inappropriate implementation in Downloads

update to 124.0.6367.201

  * High CVE-2024-4671: Use after free in Visuals

  • update to 124.0.6367.155

    • High CVE-2024-4558: Use after free in ANGLE
    • High CVE-2024-4559: Heap buffer overflow in WebAudio

update to 124.0.6367.118

  * High CVE-2024-4331: Use after free in Picture In Picture
  * High CVE-2024-4368: Use after free in Dawn

update to 124.0.6367.91


update to 124.0.6367.78

  * Critical CVE-2024-4058: Type Confusion in ANGLE
  * High CVE-2024-4059: Out of bounds read in V8 API
  * High CVE-2024-4060: Use after free in Dawn

update to 124.0.6367.60

  • High CVE-2024-3832: Object corruption in V8
  • High CVE-2024-3833: Object corruption in WebAssembly
  • High CVE-2024-3914: Use after free in V8
  • High CVE-2024-3834: Use after free in Downloads
  • Medium CVE-2024-3837: Use after free in QUIC
  • Medium CVE-2024-3838: Inappropriate implementation in Autofill
  • Medium CVE-2024-3839: Out of bounds read in Fonts
  • Medium CVE-2024-3840: Insufficient policy enforcement in Site Isolation
  • Medium CVE-2024-3841: Insufficient data validation in Browser Switcher
  • Medium CVE-2024-3843: Insufficient data validation in Downloads
  • Low CVE-2024-3844: Inappropriate implementation in Extensions
  • Low CVE-2024-3845: Inappropriate implementation in Network
  • Low CVE-2024-3846: Inappropriate implementation in Prompts
  • Low CVE-2024-3847: Insufficient policy enforcement in WebUI

update to 123.0.6312.122

  • High CVE-2024-3157: Out of bounds write in Compositing
  • High CVE-2024-3516: Heap buffer overflow in ANGLE
  • High CVE-2024-3515: Use after free in Dawn

This update has been submitted for testing by than.

9 months ago

This update's test gating status has been changed to 'ignored'.

9 months ago

This update has obsoleted chromium-125.0.6422.60-1.el9, and has inherited its bugs and notes.

9 months ago

This update has been pushed to testing.

9 months ago

This update has been submitted for stable by bodhi.

9 months ago
User Icon ntait commented & provided feedback 9 months ago
karma

Yes, basic web browsing features work like normal.

This update has been pushed to stable.

8 months ago

Please login to add feedback.

Metadata
Type
security
Severity
high
Karma
1
Signed
Content Type
RPM
Test Gating
Autopush Settings
Unstable by Karma
-3
Stable by Karma
1
Stable by Time
7 days
Dates
submitted
9 months ago
in testing
9 months ago
in stable
8 months ago
approved
9 months ago
BZ#2274473 CVE-2024-3157 CVE-2024-3515 CVE-2024-3516 chromium: various flaws [epel-all]
0
0
BZ#2274695 CVE-2023-49528 chromium: FFmpeg: Heap Buffer Overflow vulnerability [epel-all]
0
0
BZ#2275548 CVE-2024-3833 CVE-2024-3834 CVE-2024-3837 CVE-2024-3839 CVE-2024-3840 CVE-2024-3841 CVE-2024-3843 CVE-2024-3844 CVE-2024-3845 CVE-2024-3846 CVE-2024-3847 chromium: various flaws [epel-all]
0
0
BZ#2275815 CVE-2024-3914 chromium: chromium-browser: use after free in V8 [epel-all]
0
0
BZ#2275841 CVE-2024-31578 CVE-2024-31581 CVE-2024-31582 CVE-2024-31585 chromium: ffmpeg: multiple vulnerabilities [epel-all]
0
0
BZ#2276116 CVE-2023-49501 CVE-2023-49502 CVE-2023-51791 CVE-2023-51792 CVE-2023-51793 chromium: ffmpeg: multiple vulnerabilities [epel-all]
0
0
BZ#2276123 CVE-2023-51795 CVE-2023-51796 CVE-2023-51797 CVE-2023-51798 chromium: ffmpeg: multiple vulnerabilites [epel-all]
0
0
BZ#2276130 CVE-2023-50007 CVE-2023-50008 CVE-2023-50009 CVE-2023-50010 chromium: ffmpeg: multiple vulnerabilitites [epel-all]
0
0
BZ#2276890 CVE-2024-4058 chromium: chromium-browser: Type Confusion in ANGLE [fedora-all]
0
0
BZ#2276891 CVE-2024-4058 chromium: chromium-browser: Type Confusion in ANGLE [epel-all]
0
0
BZ#2277228 chromium wrapper causes library issues (symbol lookup error)
0
0
BZ#2278765 CVE-2024-4331 chromium: chromium-browser: Use after free in Picture In Picture [fedora-all]
0
0
BZ#2278766 CVE-2024-4331 chromium: chromium-browser: Use after free in Picture In Picture [epel-all]
0
0
BZ#2278770 CVE-2024-4368 chromium: chromium-browser: Use after free in Dawn [fedora-all]
0
0
BZ#2278771 CVE-2024-4368 chromium: chromium-browser: Use after free in Dawn [epel-all]
0
0
BZ#2279687 CVE-2024-4559 chromium: chromium-browser: Heap buffer overflow in WebAudio [epel-all]
0
0
BZ#2279688 CVE-2024-4559 chromium: chromium-browser: Heap buffer overflow in WebAudio [fedora-all]
0
0
BZ#2279690 CVE-2024-4558 chromium: chromium-browser: Use after free in ANGLE [epel-all]
0
0
BZ#2279691 CVE-2024-4558 chromium: chromium-browser: Use after free in ANGLE [fedora-all]
0
0
BZ#2280247 CVE-2024-4671 chromium: chromium-browser: use after free in Visuals [epel-all]
0
0
BZ#2280590 CVE-2024-4761 chromium: chromium-browser: Out of bounds write in V8 [epel-all]
0
0
BZ#2280866 CVE-2024-4950 chromium: chromium-browser: Inappropriate implementation in Downloads [epel-all]
0
0
BZ#2280870 CVE-2024-4949 chromium: chromium-browser: Use after free in V8 [epel-all]
0
0
BZ#2282269 headless_shell segfaults
0
0
BZ#2282818 CVE-2024-5157 CVE-2024-5158 CVE-2024-5159 CVE-2024-5160 chromium: various flaws [epel-all]
0
0

Automated Test Results