Alerts This Week
Warning Icon 1 916
Alerts This Week
Warning Icon 1 916

Fedora 38 FEDORA-2023-a9062a0411 Critical: Chromium Use-After-Free Threat

fedora
Calendar Grey October 29, 2023
Dist Fedora Esm H88
Fedora 38 unveils an important security patch for Firefox tackling CVE-2023-5431 regarding a severe memory corruption vulnerability
update to 118.0.5993.117

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

update to 118.0.5993.117. Security release for CVE-2023-5472 ---- Update to 118.0.5993.88

Change Log

* Wed Oct 25 2023 Than Ngo - 118.0.5993.117-1 - update to 118.0.5993.117 * Wed Oct 18 2023 Than Ngo - 118.0.5993.88-1 - update to 118.0.5993.88 - cleanup the package dependencies

References


[ 1 ] Bug #2246173 - CVE-2023-5472 chromium: chromium-browser: Use after free in Profiles [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2246173 [ 2 ] Bug #2246174 - CVE-2023-5472 chromium: chromium-browser: Use after free in Profiles [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2246174 [ 3 ] Bug #2246427 - Using this package, the only way to stay relatively current with security patches is to use the rawhide build. All other builds, including from testing, are consistently behind. https://bugzilla.redhat.com/show_bug.cgi?id=2246427

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2023-a9062a0411' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html

Severity
critical
Lowest
Low
Medium
High
Critical

Name: chromium
Product: Fedora 38
Version: 118.0.5993.117
Release: 1.fc38
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here