Alerts This Week
Warning Icon 1 692
Alerts This Week
Warning Icon 1 692

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -6 articles for you...
89

Fedora 40: FEDORA-2025-762804f16e critical: chromium issues

Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 * CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools * CVE-2025-1916: Use after free in Profiles. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2025-762804f16e 2025-03-08 01:35:17.955242+00:00 -------------------------------------------------------------------------------- Name : chromium Product : Fedora 40 Version : 134.0.6998.35 Release : 1.fc40 URL : http://www.chromium.org/Home Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use Description : Chromium is an open-source web browser, powered by WebKit (Blink). -------------------------------------------------------------------------------- Update Information: Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 * CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools * CVE-2025-1916: Use after free in Profiles * CVE-2025-1917: Inappropriate Implementation in Browser UI * CVE-2025-1918: Out of bounds read in PDFium * CVE-2025-1919: Out of bounds read in Media * CVE-2025-1921: Inappropriate Implementation in Media Stream * CVE-2025-1922: Inappropriate Implementation in Selection * CVE-2025-1923: Inappropriate Implementation in Permission Prompts -------------------------------------------------------------------------------- ChangeLog: * Wed Mar 5 2025 Than Ngo - 134.0.6998.35 -1 - Update to 134.0.6998.35 * CVE-2025-1914: Out of bounds read in V8 * CVE-2025-1915: Improper Limitation of a Pathname to a Restricted Directory in DevTools * CVE-2025-1916: Use after free in Profiles * CVE-2025-1917: Inappropriate Implementation in Browser UI * CVE-2025-1918: Out of bounds read in PDFium * CVE-2025-1919: Out of bounds read in Media * CVE-2025-1921: Inappropriate Implementation in Media Stream * CVE-2025-1922:Inappropriate Implementation in Selection * CVE-2025-1923: Inappropriate Implementation in Permission Prompts -------------------------------------------------------------------------------- References: [ 1 ] Bug #2349973 - CVE-2025-1914 chromium: From CVEorg collector [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2349973 [ 2 ] Bug #2349974 - CVE-2025-1914 chromium: From CVEorg collector [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2349974 [ 3 ] Bug #2350032 - CVE-2025-1921 chromium: Inappropriate implementation in Media Stream [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350032 [ 4 ] Bug #2350033 - CVE-2025-1921 chromium: Inappropriate implementation in Media Stream [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350033 [ 5 ] Bug #2350034 - CVE-2025-1918 chromium: Out of bounds read in PDFium [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350034 [ 6 ] Bug #2350035 - CVE-2025-1918 chromium: Out of bounds read in PDFium [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350035 [ 7 ] Bug #2350036 - CVE-2025-1923 chromium: Inappropriate implementation in Permission Prompts [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350036 [ 8 ] Bug #2350037 - CVE-2025-1916 chromium: Use after free in Profiles [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350037 [ 9 ] Bug #2350038 - CVE-2025-1923 chromium: Inappropriate implementation in Permission Prompts [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350038 [ 10 ] Bug #2350039 - CVE-2025-1916 chromium: Use after free in Profiles [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350039 [ 11 ] Bug #2350040 - CVE-2025-1915 chromium: Improper Limitation of a Pathname [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350040 [ 12 ] Bug #2350041 - CVE-2025-1919 chromium: Out of bounds read in Media [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350041 [ 13 ] Bug #2350042 - CVE-2025-1915 chromium: Improper Limitation of a Pathname [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350042 [ 14 ] Bug #2350043 - CVE-2025-1919 chromium: Out of bounds read in Media [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2350043 -------------------------------------------------------------------------------- This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2025-762804f16e' at the command line. For more information, refer to the dnf documentation available at http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- -- _______________________________________________ package-announce mailing list -- This email address is being protected from spambots. You need JavaScript enabled to view it. To unsubscribe send an email to This email address is being protected from spambots. You need JavaScript enabled to view it. Fedora Code of Conduct: https://docs.fedoraproject.org/en-US/project/code-of-conduct/ List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines List Archives: https://lists.fedoraproject.org/archives/list/This email address is being protected from spambots. You need JavaScript enabled to view it. Do not reply to spam, report it: https://pagure.io/fedora-infrastructure/new_issue . The latest Fedora 40 update tackles significant vulnerabilities found in Chromium, specifically concerning out of bounds reads and deficiencies in restriction measures.. Fedora 40 Updates, Chromium Security, Open Source Browser. . Severity: Critical. LinuxSecurity.com Team

Calendar 2 Mar 08, 2025 Critical Fedora
202

openSUSE: 2024:0302-1 Important: Chromium Buffer Overflows and Free Issues

An update that fixes four vulnerabilities is now available. . openSUSE Security Update: Security update for chromium ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0302-1 Rating: important References: #1230391 Cross-References: CVE-2024-8636 CVE-2024-8637 CVE-2024-8638 CVE-2024-8639 Affected Products: openSUSE Backports SLE-15-SP5 openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes four vulnerabilities is now available. Description: This update for chromium fixes the following issues: Chromium 128.0.6613.137 (released 2024-09-10) (boo#1230391) * CVE-2024-8636: Heap buffer overflow in Skia * CVE-2024-8637: Use after free in Media Router * CVE-2024-8638: Type Confusion in V8 * CVE-2024-8639: Use after free in Autofill Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-302=1 - openSUSE Backports SLE-15-SP5: zypper in -t patch openSUSE-2024-302=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 x86_64): chromedriver-128.0.6613.137-bp156.2.26.1 chromedriver-debuginfo-128.0.6613.137-bp156.2.26.1 chromium-128.0.6613.137-bp156.2.26.1 chromium-debuginfo-128.0.6613.137-bp156.2.26.1 - openSUSE Backports SLE-15-SP5 (aarch64 x86_64): chromedriver-128.0.6613.137-bp155.2.114.1 chromium-128.0.6613.137-bp155.2.114.1 References: https://www.suse.com/security/cve/CVE-2024-8636.html https://www.suse.com/security/cve/CVE-2024-8637.html https://www.suse.com/security/cve/CVE-2024-8638.html https://www.suse.com/security/cve/CVE-2024-8639.html https://bugzilla.suse.com/1230391 . A critical openSUSE security patch for firefox addresses five vulnerabilities. Check for further information and steps for installation.. openSUSE Security Update, chromium Update, software patch, security fix, important advisory. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Sep 16, 2024 Important OpenSUSE
202

openSUSE: 2024:0278-1 Important: Chromium Security Update for Two Issues

An update that fixes two vulnerabilities is now available. . openSUSE Security Update: Security update for chromium ______________________________________________________________________________ Announcement ID: openSUSE-SU-2024:0278-1 Rating: important References: #1230108 Cross-References: CVE-2024-7970 CVE-2024-8362 Affected Products: openSUSE Backports SLE-15-SP6 ______________________________________________________________________________ An update that fixes two vulnerabilities is now available. Description: This update for chromium fixes the following issues: Chromium 128.0.6613.119 (released 2024-09-02) (boo#1230108) * CVE-2024-8362: Use after free in WebAudio * CVE-2024-7970: Out of bounds write in V8 Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP6: zypper in -t patch openSUSE-2024-278=1 Package List: - openSUSE Backports SLE-15-SP6 (aarch64 x86_64): chromedriver-128.0.6613.119-bp156.2.23.1 chromium-128.0.6613.119-bp156.2.23.1 References: https://www.suse.com/security/cve/CVE-2024-7970.html https://www.suse.com/security/cve/CVE-2024-8362.html https://bugzilla.suse.com/1230108 . An update for openSUSE addresses two critical security issues in chromium. Apply the patch immediately to safeguard your system against potential risks.. openSUSE Security Update, chromium Advisory, vulnerability Patch, software security.. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Sep 05, 2024 Important OpenSUSE
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":549,"type":"x","order":1,"pct":78.54,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.29,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.86,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.3,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here