MGASA-2015-0141
Dashboard / Vulnerabilities / MGASA-2015-0141
Summary: Updated chromium-browser-stable packages fix security vulnerabilities
Details: Updated chromium-browser-stable packages fix security vulnerabilities: Google Chrome before 41.0.2272.118 does not properly handle the interaction of IPC, the Gamepad API, and Google V8, which allows remote attackers to execute arbitrary code via unspecified vectors (CVE-2015-1233). Race condition in gpu/command_buffer/service/gles2_cmd_decoder.cc in Google Chrome before 41.0.2272.118 allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact by manipulating OpenGL ES commands (CVE-2015-1234).
References: https://advisories.mageia.org/MGASA-2015-0141.html, https://bugs.mageia.org/show_bug.cgi?id=15611, http://googlechromereleases.blogspot.com/2015/04/stable-channel-update.html
Affected packages
Package
Name: chromium-browser-stable
Purl: pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-4
Affected ranges
Type: ECOSYSTEM
Events:
