Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Fedora 40: FEDORA-2024-c01c1f5f82 High Severity: Chromium Issues

fedora
Calendar Grey May 17, 2024
Dist Fedora Esm H88
The latest Fedora update for Chromium resolves several critical and moderate vulnerabilities found in version 125.0.6422.60.
update to 125.0.6422.60 * High CVE-2024-4947: Type Confusion in V8 * High CVE-2024-4948: Use after free in Dawn * Medium CVE-2024-4949: Use after free in V8 * Low CVE-2024-4950...

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

update to 125.0.6422.60 * High CVE-2024-4947: Type Confusion in V8 * High CVE-2024-4948: Use after free in Dawn * Medium CVE-2024-4949: Use after free in V8 * Low CVE-2024-4950: Inappropriate implementation in Downloads

Change Log

* Thu May 16 2024 Than Ngo - 125.0.6422.60-1 - update to 125.0.6422.60 * High CVE-2024-4947: Type Confusion in V8 * High CVE-2024-4948: Use after free in Dawn * Medium CVE-2024-4949: Use after free in V8 * Low CVE-2024-4950: Inappropriate implementation in Downloads * Sun May 12 2024 Than Ngo - 125.0.6422.41-1 - update to 125.0.6422.41 * Sat May 11 2024 Than Ngo - 124.0.6367.201-2 - include headless_command_resources.pak for headless_shell

References


[ 1 ] Bug #2280248 - CVE-2024-4671 chromium: chromium-browser: use after free in Visuals [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280248 [ 2 ] Bug #2280397 - CVE-2024-4761: Out of bounds write in V8. https://bugzilla.redhat.com/show_bug.cgi?id=2280397 [ 3 ] Bug #2280591 - CVE-2024-4761 chromium: chromium-browser: Out of bounds write in V8 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2280591 [ 4 ] Bug #2280720 - High CVE-2024-4947: Type Confusion in V8 (and eight other CVEs patched in 125.0.6422.60) https://bugzilla.redhat.com/show_bug.cgi?id=2280720

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2024-c01c1f5f82' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Name: chromium
Product: Fedora 40
Version: 125.0.6422.60
Release: 1.fc40
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here