Alerts This Week
Warning Icon 1 677
Alerts This Week
Warning Icon 1 677

Fedora 41: Crucial Use After Free and Mojo Advisories for Chromium

fedora
Calendar Grey September 18, 2025
Dist Fedora Esm H88
Patch for Chromium on Fedora targeting urgent use-after-free vulnerabilities and improvements on Mojo framework functionality.

Update to 140.0.7339.127 CVE-2025-10200: Use after free in Serviceworker CVE-2025-10201: Inappropriate implementation in Mojo

Summary

Chromium is an open-source web browser, powered by WebKit (Blink).

Update Information:

Update to 140.0.7339.127 CVE-2025-10200: Use after free in Serviceworker CVE-2025-10201: Inappropriate implementation in Mojo

Change Log

* Thu Sep 11 2025 Than Ngo <than@redhat.com> - 140.0.7339.127-1 - Update to 140.0.7339.127 * CVE-2025-10200: Use after free in Serviceworker * CVE-2025-10201: Inappropriate implementation in Mojo

References


[ 1 ] Bug #2390725 - CVE-2025-4609 chromium: Incorrect handle provided in unspecified circumstances in Mojo [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2390725 [ 2 ] Bug #2392286 - CVE-2025-9478 chromium: Use after free in ANGLE [epel-8] https://bugzilla.redhat.com/show_bug.cgi?id=2392286 [ 3 ] Bug #2392293 - CVE-2025-9478 chromium: Use after free in ANGLE [fedora-42] https://bugzilla.redhat.com/show_bug.cgi?id=2392293 [ 4 ] Bug #2393035 - CVE-2025-9864 chromium: Use after free in Cast in Google Chrome [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2393035 [ 5 ] Bug #2393036 - CVE-2025-9864 chromium: Use after free in Cast in Google Chrome [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2393036 [ 6 ] Bug #2393051 - CVE-2025-9866 chromium: Inappropriate implementation in Extensions in Google Chrome [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2393051 [ 7 ] Bug #2393052 - CV...

Read the Full Advisory

Update Instructions

This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-2cc476bf84' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

Severity
critical
Lowest
Low
Medium
High
Critical

Name: chromium
Product: Fedora 41
Version: 140.0.7339.127
Release: 1.fc41
Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here