The updated packages fix security vulnerabilities. One of those problems is a security issue in V8 engine that is actively exploited. References: - https://bugs.mageia.org/show_bug.cgi?id=28180 . MGASA-2021-0083 - Updated chromium-browser packages fix security vulnerability Publication date: 15 Feb 2021 URL: https://advisories.mageia.org/MGASA-2021-0083.html Type: security Affected Mageia releases: 7 The updated packages fix security vulnerabilities. One of those problems is a security issue in V8 engine that is actively exploited. References: - https://bugs.mageia.org/show_bug.cgi?id=28180 - https://chromereleases.googleblog.com/2021/01/stable-channel-update-for-desktop_19.html - https://chromereleases.googleblog.com/2021/02/stable-channel-update-for-desktop.html - https://chromereleases.googleblog.com/2021/02/stable-channel-update-for-desktop_4.html SRPMS: - 7/core/chromium-browser-stable-88.0.4324.150-1.mga7 . New chromium-browser updates fix severe V8 engine security flaws currently exploited in Mageia systems.. Chromium Browser, Mageia Security, V8 Engine Fix, Software Update, Vulnerability Management. . LinuxSecurity.com Team
Fix for ARM-only CVE-2014-3152. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-6845 2015-04-26 07:25:43 -------------------------------------------------------------------------------- Name : v8 Product : Fedora 21 Version : 3.14.5.10 Release : 18.fc21 URL : https://issues.chromium.org/issues Summary : JavaScript Engine Description : V8 is Google's open source JavaScript engine. V8 is written in C++ and is used in Google Chrome, the open source browser from Google. V8 implements ECMAScript as specified in ECMA-262, 3rd edition. -------------------------------------------------------------------------------- Update Information: Fix for ARM-only CVE-2014-3152 -------------------------------------------------------------------------------- ChangeLog: * Thu Apr 23 2015 Tom Callaway - 1:3.14.5.10-18 - backport security fix for ARM - CVE-2014-3152 * Thu Feb 19 2015 T.C. Hollingsworth - 1:3.14.5.10-17 - backports for nodejs 0.10.36 * Mon Jan 26 2015 David Tardon - 1:3.14.5.10-16 - rebuild for ICU 54.1 * Tue Dec 2 2014 Tom Callaway - 1:3.14.5.10-15 - use system valgrind header (bz1141483) -------------------------------------------------------------------------------- References: [ 1 ] Bug #1101056 - CVE-2014-3152 v8: integer underflow fixed in Google Chrome 35.0.1916.114 https://bugzilla.redhat.com/show_bug.cgi?id=1101056 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update v8' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announcemailing list
Fix for ARM-only CVE-2014-3152. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2015-6890 2015-04-26 07:32:15 -------------------------------------------------------------------------------- Name : v8 Product : Fedora 22 Version : 3.14.5.10 Release : 18.fc22 URL : https://issues.chromium.org/issues Summary : JavaScript Engine Description : V8 is Google's open source JavaScript engine. V8 is written in C++ and is used in Google Chrome, the open source browser from Google. V8 implements ECMAScript as specified in ECMA-262, 3rd edition. -------------------------------------------------------------------------------- Update Information: Fix for ARM-only CVE-2014-3152 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1101056 - CVE-2014-3152 v8: integer underflow fixed in Google Chrome 35.0.1916.114 https://bugzilla.redhat.com/show_bug.cgi?id=1101056 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update v8' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Get the latest Linux and open source security news straight to your inbox.