Alerts This Week
Warning Icon 1 764
Alerts This Week
Warning Icon 1 764

Mageia 9: 2025-0137 critical: chromium-browser-stable security flaws

mageia
Calendar Grey April 17, 2025
Dist Mageia Esm H88
The latest update for Mageia's firefox-browser-secure addresses multiple security weaknesses that could compromise user protection and application reliability.
Use after free in Site Isolation

Summary

Use after free in Site Isolation. (CVE-2025-3066) Inappropriate implementation in Custom Tabs. (CVE-2025-3067) Inappropriate implementation in Intents. (CVE-2025-3068) Inappropriate implementation in Extensions. (CVE-2025-3069) Insufficient validation of untrusted input in Extensions. (CVE-2025-3070) Inappropriate implementation in Navigations. (CVE-2025-3071) Inappropriate implementation in Custom Tabs. (CVE-2025-3072) Inappropriate implementation in Autofill. (CVE-2025-3073) Inappropriate implementation in Downloads. (CVE-2025-3074)

References

- https://bugs.mageia.org/show_bug.cgi?id=34156

- https://chromereleases.googleblog.com/2025/04/stable-channel-update-for-desktop.html

- https://chromereleases.googleblog.com/2025/04/stable-channel-update-for-desktop_8.html

- https://www.cve.org/CVERecord?id=CVE-2025-3066

- https://www.cve.org/CVERecord?id=CVE-2025-3067

- https://www.cve.org/CVERecord?id=CVE-2025-3068

- https://www.cve.org/CVERecord?id=CVE-2025-3069

- https://www.cve.org/CVERecord?id=CVE-2025-3070

- https://www.cve.org/CVERecord?id=CVE-2025-3071

- https://www.cve.org/CVERecord?id=CVE-2025-3072

- https://www.cve.org/CVERecord?id=CVE-2025-3073

- https://www.cve.org/CVERecord?id=CVE-2025-3074

Resolution

SRPMS

- 9/tainted/chromium-browser-stable-134.0.6998.165-1.mga9.tainted

Severity
critical
Lowest
Low
Medium
High
Critical

Publication date: 17 Apr 2025
URL: https://advisories.mageia.org/MGASA-2025-0137.html
Type: security
CVE: CVE-2025-3066, CVE-2025-3067, CVE-2025-3068, CVE-2025-3069, CVE-2025-3070, CVE-2025-3071, CVE-2025-3072, CVE-2025-3073, CVE-2025-3074

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here