The package chromium before version 86.0.4240.75-1 is vulnerable to multiple issues including arbitrary code execution, access restriction bypass, information disclosure and insufficient validation. . Arch Linux Security Advisory ASA-202010-1 ======================================== Severity: Critical Date : 2020-10-10 CVE-ID : CVE-2020-6557 CVE-2020-15967 CVE-2020-15968 CVE-2020-15969 CVE-2020-15970 CVE-2020-15971 CVE-2020-15972 CVE-2020-15973 CVE-2020-15974 CVE-2020-15975 CVE-2020-15976 CVE-2020-15977 CVE-2020-15978 CVE-2020-15979 CVE-2020-15980 CVE-2020-15981 CVE-2020-15982 CVE-2020-15983 CVE-2020-15984 CVE-2020-15985 CVE-2020-15986 CVE-2020-15987 CVE-2020-15988 CVE-2020-15989 CVE-2020-15990 CVE-2020-15991 CVE-2020-15992 Package : chromium Type : multiple issues Remote : Yes Link : https://security.archlinux.org/AVG-1238 Summary ====== The package chromium before version 86.0.4240.75-1 is vulnerable to multiple issues including arbitrary code execution, access restriction bypass, information disclosure and insufficient validation. Resolution ========= Upgrade to 86.0.4240.75-1. # pacman -Syu "chromium> =86.0.4240.75-1" The problems have been fixed upstream in version 86.0.4240.75. Workaround ========= None. Description ========== - CVE-2020-6557 (access restriction bypass) An inappropriate implementation security issue has been found in the networking component of the chromium browser before 86.0.4240.75. - CVE-2020-15967 (arbitrary code execution) A use after free security issue has been found in the payments component of the chromium browser before 86.0.4240.75. - CVE-2020-15968 (arbitrary code execution) A use after free security issue has been found in the Blink component of the chromium browser before 86.0.4240.75. - CVE-2020-15969 (arbitrary code execution) A use after free security issue has been found in the WebRTC component of the chromium browser before86.0.4240.75. - CVE-2020-15970 (arbitrary code execution) A use after free security issue has been found in the NFC component of the chromium browser before 86.0.4240.75. - CVE-2020-15971 (arbitrary code execution) A use after free security issue has been found in the printing component of the chromium browser before 86.0.4240.75. - CVE-2020-15972 (arbitrary code execution) A use after free security issue has been found in the audio component of the chromium browser before 86.0.4240.75. - CVE-2020-15973 (access restriction bypass) An insufficient policy enforcement security issue has been found in the extensions component of the chromium browser before 86.0.4240.75. - CVE-2020-15974 (arbitrary code execution) An integer overflow security issue has been found in the Blink component of the chromium browser before 86.0.4240.75. - CVE-2020-15975 (arbitrary code execution) An integer overflow security issue has been found in the SwiftShader component of the chromium browser before 86.0.4240.75. - CVE-2020-15976 (arbitrary code execution) A use after free security issue has been found in the WebXR component of the chromium browser before 86.0.4240.75. - CVE-2020-15977 (insufficient validation) An insufficient data validation security issue has been found in the dialogs component of the chromium browser before 86.0.4240.75. - CVE-2020-15978 (insufficient validation) An insufficient data validation security issue has been found in the navigation component of the chromium browser before 86.0.4240.75. - CVE-2020-15979 (access restriction bypass) An inappropriate implementation security issue has been found in the V8 component of the chromium browser before 86.0.4240.75. - CVE-2020-15980 (access restriction bypass) An insufficient policy enforcement security issue has been found in the Intents component of the chromium browser before 86.0.4240.75. - CVE-2020-15981 (information disclosure) An out of bounds read security issue has been foundin the audio component of the chromium browser before 86.0.4240.75. - CVE-2020-15982 (information disclosure) A side-channel information leakage security issue has been found in the cache component of the chromium browser before 86.0.4240.75. - CVE-2020-15983 (insufficient validation) An insufficient data validation security issue has been found in the webUI component of the chromium browser before 86.0.4240.75. - CVE-2020-15984 (access restriction bypass) An insufficient policy enforcement security issue has been found in the Omnibox component of the chromium browser before 86.0.4240.75. - CVE-2020-15985 (access restriction bypass) An inappropriate implementation security issue has been found in the Blink component of the chromium browser before 86.0.4240.75. - CVE-2020-15986 (arbitrary code execution) An integer overflow security issue has been found in the media component of the chromium browser before 86.0.4240.75. - CVE-2020-15987 (arbitrary code execution) A use after free security issue has been found in the WebRTC component of the chromium browser before 86.0.4240.75. - CVE-2020-15988 (access restriction bypass) An insufficient policy enforcement security issue has been found in the downloads component of the chromium browser before 86.0.4240.75. - CVE-2020-15989 (information disclosure) An uninitialized use security issue has been found in the PDFium component of the chromium browser before 86.0.4240.75. - CVE-2020-15990 (arbitrary code execution) A use after free security issue has been found in the autofill component of the chromium browser before 86.0.4240.75. - CVE-2020-15991 (arbitrary code execution) A use after free security issue has been found in the password manager component of the chromium browser before 86.0.4240.75. - CVE-2020-15992 (access restriction bypass) An insufficient policy enforcement security issue has been found in the networking component of the chromium browser before86.0.4240.75. Impact ===== A remote attacker can access sensitive information, bypass security measures and execute arbitrary code on the affected host. References ========= https://chromereleases.googleblog.com/2020/10/stable-channel-update-for-desktop.html https://security.archlinux.org/CVE-2020-6557 https://security.archlinux.org/CVE-2020-15967 https://security.archlinux.org/CVE-2020-15968 https://security.archlinux.org/CVE-2020-15969 https://security.archlinux.org/CVE-2020-15970 https://security.archlinux.org/CVE-2020-15971 https://security.archlinux.org/CVE-2020-15972 https://security.archlinux.org/CVE-2020-15973 https://security.archlinux.org/CVE-2020-15974 https://security.archlinux.org/CVE-2020-15975 https://security.archlinux.org/CVE-2020-15976 https://security.archlinux.org/CVE-2020-15977 https://security.archlinux.org/CVE-2020-15978 https://security.archlinux.org/CVE-2020-15979 https://security.archlinux.org/CVE-2020-15980 https://security.archlinux.org/CVE-2020-15981 https://security.archlinux.org/CVE-2020-15982 https://security.archlinux.org/CVE-2020-15983 https://security.archlinux.org/CVE-2020-15984 https://security.archlinux.org/CVE-2020-15985 https://security.archlinux.org/CVE-2020-15986 https://security.archlinux.org/CVE-2020-15987 https://security.archlinux.org/CVE-2020-15988 https://security.archlinux.org/CVE-2020-15989 https://security.archlinux.org/CVE-2020-15990 https://security.archlinux.org/CVE-2020-15991 https://security.archlinux.org/CVE-2020-15992 . The Debian security notices highlight serious vulnerabilities in Firefox impacting versions earlier than 78.3.0-1. Remedy by applying the latest updates.. Critical Issues, Remote Code Execution, Chromium Security, Access Control, Information Disclosure. . Severity: Critical. LinuxSecurity.com Team
An update for fuse is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from. -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 ==================================================================== Red Hat Security Advisory Synopsis: Moderate: fuse security update Advisory ID: RHSA-2018:3324-01 Product: Red Hat Enterprise Linux Advisory URL: https://access.redhat.com/errata/RHSA-2018:3324 Issue date: 2018-10-30 CVE Names: CVE-2018-10906 ==================================================================== 1. Summary: An update for fuse is now available for Red Hat Enterprise Linux 7. Red Hat Product Security has rated this update as having a security impact of Moderate. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section. 2. Relevant releases/architectures: Red Hat Enterprise Linux Client (v. 7) - x86_64 Red Hat Enterprise Linux Client Optional (v. 7) - x86_64 Red Hat Enterprise Linux ComputeNode (v. 7) - x86_64 Red Hat Enterprise Linux ComputeNode Optional (v. 7) - x86_64 Red Hat Enterprise Linux Server (v. 7) - ppc64, ppc64le, s390x, x86_64 Red Hat Enterprise Linux Workstation (v. 7) - x86_64 Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7) - aarch64, ppc64le, s390x 3. Description: The fuse packages contain the File System in Userspace (FUSE) tools to mount a FUSE file system. With FUSE, it is possible to implement a fully functional file system in a user-space program. Security Fix(es): * fuse: bypass of the "user_allow_other" restriction when SELinux is active (CVE-2018-10906) For more details about the security issue(s), including the impact, a CVSS score, and other relatedinformation, refer to the CVE page(s) listed in the References section. Additional Changes: For detailed information on changes in this release, see the Red Hat Enterprise Linux 7.6 Release Notes linked from the References section. 4. Solution: For details on how to apply this update, which includes the changes described in this advisory, refer to: https://access.redhat.com/articles/11258 5. Bugs fixed (https://bugzilla.redhat.com/): 1602996 - CVE-2018-10906 fuse: bypass of the "user_allow_other" restriction when SELinux is active 6. Package List: Red Hat Enterprise Linux Client (v. 7): Source: fuse-2.9.2-11.el7.src.rpm x86_64: fuse-2.9.2-11.el7.x86_64.rpm fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-libs-2.9.2-11.el7.i686.rpm fuse-libs-2.9.2-11.el7.x86_64.rpm Red Hat Enterprise Linux Client Optional (v. 7): x86_64: fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-devel-2.9.2-11.el7.i686.rpm fuse-devel-2.9.2-11.el7.x86_64.rpm Red Hat Enterprise Linux ComputeNode (v. 7): Source: fuse-2.9.2-11.el7.src.rpm x86_64: fuse-2.9.2-11.el7.x86_64.rpm fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-libs-2.9.2-11.el7.i686.rpm fuse-libs-2.9.2-11.el7.x86_64.rpm Red Hat Enterprise Linux ComputeNode Optional (v. 7): x86_64: fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-devel-2.9.2-11.el7.i686.rpm fuse-devel-2.9.2-11.el7.x86_64.rpm Red Hat Enterprise Linux Server (v.7): Source: fuse-2.9.2-11.el7.src.rpm ppc64: fuse-2.9.2-11.el7.ppc64.rpm fuse-debuginfo-2.9.2-11.el7.ppc.rpm fuse-debuginfo-2.9.2-11.el7.ppc64.rpm fuse-devel-2.9.2-11.el7.ppc.rpm fuse-devel-2.9.2-11.el7.ppc64.rpm fuse-libs-2.9.2-11.el7.ppc.rpm fuse-libs-2.9.2-11.el7.ppc64.rpm ppc64le: fuse-2.9.2-11.el7.ppc64le.rpm fuse-debuginfo-2.9.2-11.el7.ppc64le.rpm fuse-devel-2.9.2-11.el7.ppc64le.rpm fuse-libs-2.9.2-11.el7.ppc64le.rpm s390x: fuse-2.9.2-11.el7.s390x.rpm fuse-debuginfo-2.9.2-11.el7.s390.rpm fuse-debuginfo-2.9.2-11.el7.s390x.rpm fuse-devel-2.9.2-11.el7.s390.rpm fuse-devel-2.9.2-11.el7.s390x.rpm fuse-libs-2.9.2-11.el7.s390.rpm fuse-libs-2.9.2-11.el7.s390x.rpm x86_64: fuse-2.9.2-11.el7.x86_64.rpm fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-devel-2.9.2-11.el7.i686.rpm fuse-devel-2.9.2-11.el7.x86_64.rpm fuse-libs-2.9.2-11.el7.i686.rpm fuse-libs-2.9.2-11.el7.x86_64.rpm Red Hat Enterprise Linux for ARM and IBM Power LE (POWER9) Server (v. 7): Source: fuse-2.9.2-11.el7.src.rpm aarch64: fuse-2.9.2-11.el7.aarch64.rpm fuse-debuginfo-2.9.2-11.el7.aarch64.rpm fuse-devel-2.9.2-11.el7.aarch64.rpm fuse-libs-2.9.2-11.el7.aarch64.rpm ppc64le: fuse-2.9.2-11.el7.ppc64le.rpm fuse-debuginfo-2.9.2-11.el7.ppc64le.rpm fuse-devel-2.9.2-11.el7.ppc64le.rpm fuse-libs-2.9.2-11.el7.ppc64le.rpm s390x: fuse-2.9.2-11.el7.s390x.rpm fuse-debuginfo-2.9.2-11.el7.s390.rpm fuse-debuginfo-2.9.2-11.el7.s390x.rpm fuse-devel-2.9.2-11.el7.s390.rpm fuse-devel-2.9.2-11.el7.s390x.rpm fuse-libs-2.9.2-11.el7.s390.rpm fuse-libs-2.9.2-11.el7.s390x.rpm Red Hat Enterprise Linux Workstation (v. 7): Source: fuse-2.9.2-11.el7.src.rpm x86_64: fuse-2.9.2-11.el7.x86_64.rpm fuse-debuginfo-2.9.2-11.el7.i686.rpm fuse-debuginfo-2.9.2-11.el7.x86_64.rpm fuse-devel-2.9.2-11.el7.i686.rpm fuse-devel-2.9.2-11.el7.x86_64.rpm fuse-libs-2.9.2-11.el7.i686.rpm fuse-libs-2.9.2-11.el7.x86_64.rpm These packages are GPG signed by Red Hat for security. Our key and details on how to verify the signature are availablefrom https://access.redhat.com/security/team/key/ 7. References: https://access.redhat.com/security/cve/CVE-2018-10906 https://access.redhat.com/security/updates/classification/#moderate https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/7/html/7.6_release_notes/index 8. Contact: The Red Hat security contact is . More contact details at https://access.redhat.com/security/team/contact/ Copyright 2018 Red Hat, Inc. -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQIVAwUBW9gRwNzjgjWX9erEAQiDOg/8C4ggZ2DsAH5MSZwMWgfekCY2C5xs9X+5 MlITNuAdkI8rjhP4LVkL53UpE3Q5YqerIFwD1tv+HYyNkVNEeZqiu8KCx8D0/MxR RMcg34jDP9MZGm43epFpxRSxI8s4QsovZQ4+GLNGJBIR6l3VpReyU6hoS/aGCZfU Ah0CMbnDyEcptUGTtPQu/4wPemWtKB7r5DEPnyTVwfX8jst63yJ3zj/Jk0mtQLW5 2GqUeVpoxRjVmIf1Th9fVVp/dq7xspoumUEIQw4Vrf3CPo7xw9VWgjb/cickpN3I VFX4xs25cJ5cvjaW+HuB53bk4uiVtv9Jpc2fGNmwskkXIiO4c/JJXU194nGfdqyC WIKsw1xyvrsI3+n6lTThJydH8i33RI4ap5hFY3lrSUUpQ65r7jg9LlD5mRXeD3U6 lgyDJ4u4HBcTDoniNdkkwg/HMaod6xyCT5z0swc/baGk/OTXvlviIR+ntBi+5JCB qf+Lblv/3MdWSlwTF8HcCSErZaZI2/FiTNc6K6hj7EDK+zFNrgRvH9XQV0wO/n19 TERBkyJ4rzBJ+hcA8UQA7ltcX6ynx5stfJC+46mFw0iRD3EVacI81Nsur93oIntl Bjzr3SHaCv91zgze448Mr+JejtLdRhJHv7PUhe2YMffxpAFcwlAbUoZovJZ7Z41d aDbPZkBXMrU=D3Tu -----END PGP SIGNATURE----- -- RHSA-announce mailing list
Get the latest Linux and open source security news straight to your inbox.