Alerts This Week
Warning Icon 1 714
Alerts This Week
Warning Icon 1 714

Mageia 9 - MGASA-2023-0355 High: Chromium Security Flaws Fixed

mageia
Calendar Grey December 26, 2023
Dist Mageia Esm H88
The recent release of firefox-browser-stable tackles multiple issues and security flaws, particularly focusing on memory leaks.

The chromium-browser-stable package has been updated to the 120.0.6099.129 release, fixing bugs and 20 vulnerabilities, together with 120.0.6099.109, 120.0.6099.71 and 120.0.609...

Summary

The chromium-browser-stable package has been updated to the 120.0.6099.129 release, fixing bugs and 20 vulnerabilities, together with 120.0.6099.109, 120.0.6099.71 and 120.0.6099.62; some of them are listed below. High CVE-2023-6508: Use after free in Media Stream. Reported by Cassidy Kim(@cassidy6564) on 2023-10-31 High CVE-2023-6509: Use after free in Side Panel Search. Reported by Khalil Zhani on 2023-10-21 Medium CVE-2023-6510: Use after free in Media Capture. Reported by [pwn2car] on 2023-09-08 Low CVE-2023-6511: Inappropriate implementation in Autofill. Reported by Ahmed ElMasry on 2023-09-04 Low CVE-2023-6512: Inappropriate implementation in Web Browser UI. Reported by Om Apip on 2023-06-24 High CVE-2023-6702: Type Confusion in V8. Reported by Zhiyi Zhang and Zhunki from Codesafe Team of Legendsec at Qi'anxin Group on 2023-11-10 High CVE-2023-6703: Use after free in Blink. Reported by Cassidy Kim(@cassidy6564) on 2023-11-14 High CVE-2023-6704: Use af...

References

- https://bugs.mageia.org/show_bug.cgi?id=32612

- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop_20.html

- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop_12.html

- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop_6.html

- https://chromereleases.googleblog.com/2023/12/stable-channel-update-for-desktop.html

- https://www.aboutchromebooks.com/heres-whats-in-the-now-available-google-chrome-120-release/

- https://www.cve.org/CVERecord?id=CVE-2023-6508

- https://www.cve.org/CVERecord?id=CVE-2023-6509

- https://www.cve.org/CVERecord?id=CVE-2023-6510

- https://www.cve.org/CVERecord?id=CVE-2023-6511

- https://www.cve.org/CVERecord?id=CVE-2023-6512

- https://www.cve.org/CVERecord?id=CVE-2023-6702

- https://www.cve.org/CVERecord?id=CVE-2023-6703

- https://www.cve.org/CVERecord?id=CVE-2023-6704

- https://www.cve.org/CVERecord?id=CVE-2023-6705

- https://www.cve.org/CVERecord?id=CVE-2023-6706

- https://www.cve.org/CVERecord?id=CVE-2023-6707

- https://www.cve.org/CVERecord?id=CVE-2023-7024

Resolution

SRPMS

- 9/tainted/chromium-browser-stable-120.0.6099.129-2.mga9.tainted

Publication date: 26 Dec 2023
URL: https://advisories.mageia.org/MGASA-2023-0355.html
Type: security
CVE: CVE-2023-6508, CVE-2023-6509, CVE-2023-6510, CVE-2023-6511, CVE-2023-6512, CVE-2023-6702, CVE-2023-6703, CVE-2023-6704, CVE-2023-6705, CVE-2023-6706, CVE-2023-6707, CVE-2023-7024

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here