Audit Linux privileges now to limit compromise, escalation, and system-wide damage. Review Linux Privileges×

Alerts This Week
Warning Icon 1 442
Alerts This Week
Warning Icon 1 442

Fedora 40 Chromium Security Issue: Heap Overflow and Use After Free

fedora
Calendar Grey April 23, 2025
Scroller Fedora
Essential patches for Chromium in Fedora 40 mitigating buffer overflow and use after free vulnerabilities. Fortify your web experience immediately!
Update to 135.0.7049.95 CVE-2025-3619: Heap buffer overflow in Codecs CVE-2025-3620: Use after free in USB

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

Update to 135.0.7049.95 CVE-2025-3619: Heap buffer overflow in Codecs CVE-2025-3620: Use after free in USB

Change Log

* Wed Apr 16 2025 Than Ngo - 135.0.7049.95-1 - Update to 135.0.7049.95 * CVE-2025-3619: Heap buffer overflow in Codecs * CVE-2025-3620: Use after free in USB

References


[ 1 ] Bug #2360898 - CVE-2025-3620 chromium: Use after free in USB [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2360898 [ 2 ] Bug #2360899 - CVE-2025-3620 chromium: Use after free in USB [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2360899

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-7827e4feac' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: chromium
Product: Fedora 40
Version: 135.0.7049.95
Release: 1.fc40
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.