MGASA-2018-0343
Dashboard / Vulnerabilities / MGASA-2018-0343
MGASA-2018-0343
Summary: Updated chromium-browser-stable packages fix security vulnerabilities
Details: Chromium-browser 68.0.3440.106 fixes security issues: Multiple flaws were found in the way Chromium 67.0.3396.87 processes various types of web content, where loading a web page containing malicious content could cause Chromium to crash, execute arbitrary code, or disclose sensitive information (CVE-2018-4117, CVE-2018-6044, CVE-2018-6153, CVE-2018-6154, CVE-2018-6155, CVE-2018-6156, CVE-2018-6157, CVE-2018-6158, CVE-2018-6159, CVE-2018-6160, CVE-2018-6161, CVE-2018-6162, CVE-2018-6163, CVE-2018-6164, CVE-2018-6165, CVE-2018-6166, CVE-2018-6167, CVE-2018-6168, CVE-2018-6169, CVE-2018-6170, CVE-2018-6171, CVE-2018-6172, CVE-2018-6173, CVE-2018-6174, CVE-2018-6175, CVE-2018-6176, CVE-2018-6177, CVE-2018-6178, CVE-2018-6179) Upstream also reported for release 68.0.3440.75 that three additional flaws were fixed in earlier (unspecified) chromium releases but not listed in the release notes for those releases. (CVE-2018-6150, CVE-2018-6151, CVE-2018-6152)
References: https://advisories.mageia.org/MGASA-2018-0343.html, https://bugs.mageia.org/show_bug.cgi?id=23364, https://chromereleases.googleblog.com/2018/06/stable-channel-update-for-desktop_25.html, https://chromereleases.googleblog.com/2018/07/stable-channel-update-for-desktop.html, https://chromereleases.googleblog.com/2018/07/stable-channel-update-for-desktop_31.html, https://chromereleases.googleblog.com/2018/08/stable-channel-update-for-desktop.html
Affected packages
Package
Name: chromium-browser-stable
Purl: pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-6
Affected ranges
Type: ECOSYSTEM
Events:
