Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Fedora 41 Advisory FEDORA-2025-20e35f4f9f critical: site isolation issue

fedora
Calendar Grey April 13, 2025
Dist Fedora Esm H88
Upgrade Chromium within Fedora 41 to address the significant Site Isolation flaw jeopardizing web browser safety.
Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation

Change Log

* Wed Apr 9 2025 Than Ngo - 135.0.7049.84-1 - Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation * Wed Apr 2 2025 Jan Grulich - 135.0.7049.52-2 - Add CFI suppressions for inline PipeWire functions

References


[ 1 ] Bug #2357598 - headless Chromium locks up trying to process some (not all) images https://bugzilla.redhat.com/show_bug.cgi?id=2357598

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-20e35f4f9f' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: chromium
Product: Fedora 41
Version: 135.0.7049.84
Release: 1.fc41
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here