Alerts This Week
Warning Icon 1 640
Alerts This Week
Warning Icon 1 640

Gentoo: GLSA-202402-05 High: Edge Remote Code Execution Issue

gentoo
Calendar Grey February 3, 2024
Dist Gentoo Esm H88
Gentoo GLSA 202402-06 highlights a critical flaw in Mozilla Firefox that could facilitate unauthorized access. Update recommended.
Multiple vulnerabilities have been discovered in Microsoft Edge, the worst of which could lead to remote code execution.

Summary

Multiple vulnerabilities have been discovered in Microsoft Edge. Please review the CVE identifiers referenced below for details.

Resolution

All Microsoft Edge users should upgrade to the latest version:
# emerge --sync # emerge --ask --oneshot --verbose ">=www-client/microsoft-edge-120.0.2210.61"

References

[ 1 ] CVE-2023-29345 https://nvd.nist.gov/vuln/detail/CVE-2023-29345 [ 2 ] CVE-2023-33143 https://nvd.nist.gov/vuln/detail/CVE-2023-33143 [ 3 ] CVE-2023-33145 https://nvd.nist.gov/vuln/detail/CVE-2023-33145 [ 4 ] CVE-2023-35618 https://nvd.nist.gov/vuln/detail/CVE-2023-35618 [ 5 ] CVE-2023-36022 https://nvd.nist.gov/vuln/detail/CVE-2023-36022 [ 6 ] CVE-2023-36029 https://nvd.nist.gov/vuln/detail/CVE-2023-36029 [ 7 ] CVE-2023-36034 https://nvd.nist.gov/vuln/detail/CVE-2023-36034 [ 8 ] CVE-2023-36409 https://nvd.nist.gov/vuln/detail/CVE-2023-36409 [ 9 ] CVE-2023-36559 https://nvd.nist.gov/vuln/detail/CVE-2023-36559 [ 10 ] CVE-2023-36562 https://nvd.nist.gov/vuln/detail/CVE-2023-36562 [ 11 ] CVE-2023-36727 https://nvd.nist.gov/vuln/detail/CVE-2023-36727 [ 12 ] CVE-2023-36735 https://nvd.nist.gov/vuln/detail/CVE-2023-36735 [ 13 ] CVE-2023-36741 https://nvd.nist.gov/vuln/detail/CVE-2023-36741 [ 14 ] CVE-2023-36...

Read the Full Advisory

Availability

This GLSA and any updates to it are available for viewing at the Gentoo Security Website:
https://security.gentoo.org/glsa/202402-05
style>.gentoo_availability{display:block;}

Concerns

Security is a primary focus of Gentoo Linux and ensuring the confidentiality and security of our users' machines is of utmost importance to us. Any security concerns should be addressed to security@gentoo.org or alternatively, you may file a bug at https://bugs.gentoo.org.

Severity: High
Title: Microsoft Edge: Multiple Vulnerabilities
Date: February 03, 2024
Bugs: #907817, #908518, #918586, #919495
ID: 202402-05

Synopsis

Multiple vulnerabilities have been discovered in Microsoft Edge, the worst of which could lead to remote code execution.

Background

Microsoft Edge is a browser that combines a minimal design with sophisticated technology to make the web faster, safer, and easier.

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Package Vulnerable Unaffected ------------------------- --------------- ---------------- www-client/microsoft-edge < 120.0.2210.61 >= 120.0.2210.61

Impact

Please review the referenced CVE identifiers for details.

Workaround

There is no known workaround at this time.

Your message here