MGASA-2022-0241
Dashboard / Vulnerabilities / MGASA-2022-0241
MGASA-2022-0241
Summary: Updated chromium-browser-stable packages fix security vulnerability
Details: The chromium-browser-stable package has been updated to the 103.0.5060.53 branch, fixing many bugs and 14 CVE. Some of them are listed below: Use after free in Base. (CVE-2022-2156) Use after free in Interest groups. (CVE-2022-2157) Type Confusion in V8. (CVE-2022-2158) Insufficient policy enforcement in DevTools. (CVE-2022-2160) Use after free in WebApp Provider. (CVE-2022-2161) Insufficient policy enforcement in File System API. (CVE-2022-2162) Use after free in Cast UI and Toolbar. (CVE-2022-2163) Inappropriate implementation in Extensions API. (CVE-2022-2164) Insufficient data validation in URL formatting. (CVE-2022-2165) Various fixes from internal audits, fuzzing and other initiatives
References: https://advisories.mageia.org/MGASA-2022-0241.html, https://bugs.mageia.org/show_bug.cgi?id=30575, https://chromereleases.googleblog.com/2022/06/stable-channel-update-for-desktop_21.html, https://blog.chromium.org/2022/05/chrome-103-beta-early-navigation-hints.html
Affected packages
Package
Name: chromium-browser-stable
Purl: pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-8
Affected ranges
Type: ECOSYSTEM
Events:
