Alerts This Week
Warning Icon 1 535
Alerts This Week
Warning Icon 1 535

SUSE 12: SUSE-SU-2016:2251-1 Important Chromium Security Issues

suse
Calendar Grey September 6, 2016
Dist Suse Esm H88
SUSE Security Update addresses vulnerabilities in Firefox, presenting 15 critical issues; immediate measures suggested for safeguarding system integrity.
An update that fixes 20 vulnerabilities is now available

Summary

Chromium was updated to 53.0.2785.89 to fix a number of security issues. The following vulnerabilities were fixed: (boo#996648) - CVE-2016-5147: Universal XSS in Blink. - CVE-2016-5148: Universal XSS in Blink. - CVE-2016-5149: Script injection in extensions. - CVE-2016-5150: Use after free in Blink. - CVE-2016-5151: Use after free in PDFium. - CVE-2016-5152: Heap overflow in PDFium. - CVE-2016-5153: Use after destruction in Blink. - CVE-2016-5154: Heap overflow in PDFium. - CVE-2016-5155: Address bar spoofing. - CVE-2016-5156: Use after free in event bindings. - CVE-2016-5157: Heap overflow in PDFium. - CVE-2016-5158: Heap overflow in PDFium. - CVE-2016-5159: Heap overflow in PDFium. - CVE-2016-5161: Type confusion in Blink. - CVE-2016-5162: Extensions web accessible resources bypass.

References

#995932 #996032 #99606 #996648

Cross- CVE-2016-5147 CVE-2016-5148 CVE-2016-5149

CVE-2016-5150 CVE-2016-5151 CVE-2016-5152

CVE-2016-5153 CVE-2016-5154 CVE-2016-5155

CVE-2016-5156 CVE-2016-5157 CVE-2016-5158

CVE-2016-5159 CVE-2016-5160 CVE-2016-5161

CVE-2016-5162 CVE-2016-5163 CVE-2016-5164

CVE-2016-5165 CVE-2016-5166

Affected Products:

SUSE Package Hub for SUSE Linux Enterprise 12

https://www.suse.com/security/cve/CVE-2016-5147.html

https://www.suse.com/security/cve/CVE-2016-5148.html

https://www.suse.com/security/cve/CVE-2016-5149.html

https://www.suse.com/security/cve/CVE-2016-5150.html

https://www.suse.com/security/cve/CVE-2016-5151.html

https://www.suse.com/security/cve/CVE-2016-5152.html

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2016:2251-1
Rating: important

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here