Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Fedora 37: FEDORA-2023-7f87c8b975 Critical: chromium Use After Free

fedora
Calendar Grey November 3, 2023
Dist Fedora Esm H88
Upgrade to Chromium 118.0.5993.117 mitigates CVE-2023-5472 to bolster safety in Fedora 37.
update to 118.0.5993.117

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

update to 118.0.5993.117. Security release for CVE-2023-5472

Change Log

* Wed Oct 25 2023 Than Ngo - 118.0.5993.117-1 - update to 118.0.5993.117

References


[ 1 ] Bug #2246173 - CVE-2023-5472 chromium: chromium-browser: Use after free in Profiles [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2246173 [ 2 ] Bug #2246174 - CVE-2023-5472 chromium: chromium-browser: Use after free in Profiles [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2246174 [ 3 ] Bug #2246427 - Using this package, the only way to stay relatively current with security patches is to use the rawhide build. All other builds, including from testing, are consistently behind. https://bugzilla.redhat.com/show_bug.cgi?id=2246427

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-7f87c8b975' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: chromium
Product: Fedora 37
Version: 118.0.5993.117
Release: 1.fc37
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here