Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 36 Critical Advisory: 2023-4e6353c6f7 Chromium Security Fix

fedora
Calendar Grey February 13, 2023
Dist Fedora Esm H88
The latest update for Fedora 36's Chromium browser addresses several security vulnerabilities that impact both its efficiency and overall safety.
Update to 110.0.5481.77

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update to 110.0.5481.77. Fixes the following security issues: CVE-2023-0696

CVE-2023-0697 CVE-2023-0698 CVE-2023-0699 CVE-2023-0700 CVE-2023-0701

CVE-2023-0702 CVE-2023-0703 CVE-2023-0704 CVE-2023-0705 CVE-2023-25193

* Wed Feb 8 2023 Than Ngo - 110.0.5481.77-1

- update to 110.0.5481.77

* Sat Feb 4 2023 Than Ngo - 110.0.5481.61-1

- update to 110.0.5481.61

* Thu Feb 2 2023 Jan Grulich - 109.0.5414.119-2

- Use ffmpeg decoders for h264 support

[ 1 ] Bug #2167630 - CVE-2023-25193 chromium: harfbuzz: allows attackers to trigger O(n^2) growth via consecutive marks [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2167630

[ 2 ] Bug #2168785 - CVE-2023-0696 CVE-2023-0697 CVE-2023-0698 CVE-2023-0699 CVE-2023-0700 CVE-2023-0701 CVE-2023-0702 CVE-2023-0703 CVE-2023-0704 CVE-2023-0705 chromium: various flaws [fedora-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2168785

[ 3 ] Bug #2168786 - CVE-2023-0696 CVE-2023-0697 CVE-2023-0698 CVE-2023-0699 CVE-2023-0700 CVE-2023-0701 CVE-2023-0702 CVE-2023-0703 CVE-2023-0704 CVE-2023-0705 chromium: various flaws [epel-all]

https://bugzilla.redhat.com/show_bug.cgi?id=2168786

su -c 'dnf upgrade --advisory FEDORA-2023-4e6353c6f7' at the command

line. For more information, refer to the dnf documentation available at

https://dnf.readthedocs.io/en/latest/command_ref.html

All packages are signed with the Fedora Project GPG key. More details on the

GPG keys used by the Fedora Project can be found at

https://fedoraproject.org/security/

package-announce mailing list -- package-announce@lists.fedoraproject.org

To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org

Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/

List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines

List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/

Do not reply to spam, report it:

Change Log

References

Update Instructions

Severity
critical
Lowest
Low
Medium
High
Critical

Product: Fedora 36
Version: 110.0.5481.77
Release: 1.fc36
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here