Fellow Linux admins-

Check your Chrome version - multiple critical and high-severity vulnerabilities were discovered in the JavaScript engine and multiple high-severity issues, like out-of-bounds reads and use-after-free bugs, have also been fixed to prevent attackers from bypassing security measures. Read on for more info on a ton of security updates this week and how to automatically keep your browser updated using automation tools.

You'll also learn about critical security vulnerabilities affecting both the X.Org Server and XWayland that could allow malicious hackers to compromise data and critical systems.  

 

If you found value in today’s newsletter, please share it with your friends! Do you have a Linux security-related topic you'd like to cover for our audience? We welcome contributions from passionate, insightful community members who share our love for Linux and security!

Stay safe out there,

Dv Signature Newsletter 2024 Esm W150

Dave Wreski

LinuxSecurity Founder

Chrome 

The Discovery 

Several critical flaws were recently discovered in Chrome, including an out-of-bounds read in V8 and defects across DevTools Profiles and PDFium.

Chrome Esm W112

The Impact

These vulnerabilities could allow attackers to execute arbitrary code, steal sensitive information, or crash the browser, causing significant disruptions. 

 The Fix

Chrome 134 has been released to fix these severe flaws. All impacted users should update promptly to safeguard their sensitive data and prevent downtime or system compromise.

Your Related Advisories:

[distro_list_1]

X.Org

The Discovery 

Eight critical security vulnerabilities affecting both the X.Org Server and XWayland were recently disclosed. These bugs include severe user-after-free and buffer overflow vulnerabilities.

Xorg Esm W251

The Impact

These flaws could allow malicious hackers to compromise data and critical systems. 

 The Fix

X.Org Foundation has released patches for these flaws. Updating to xorg-server-21.1.16 and xwayland-24.1.6 as soon as possible is imperative in mitigating risk.

Your Related Advisories:

[distro_list_2]