Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2019:1456-1

Опубликовано: 27 мая 2019
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Chromium was updated to 74.0.3729.157:

  • Various security fixes from internal audits, fuzzing and other initiatives

Includes security fixes from 74.0.3729.131 (boo#1134218):

  • CVE-2019-5827: Out-of-bounds access in SQLite
  • CVE-2019-5824: Parameter passing error in media player

Список пакетов

openSUSE Leap 15.0
chromedriver-74.0.3729.157-lp151.2.3.1
chromium-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.1
chromedriver-74.0.3729.157-lp151.2.3.1
chromium-74.0.3729.157-lp151.2.3.1

Описание

Parameter passing error in media in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.0:chromedriver-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.0:chromium-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.1:chromedriver-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.1:chromium-74.0.3729.157-lp151.2.3.1

Ссылки

Описание

Integer overflow in SQLite via WebSQL in Google Chrome prior to 74.0.3729.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.0:chromedriver-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.0:chromium-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.1:chromedriver-74.0.3729.157-lp151.2.3.1
openSUSE Leap 15.1:chromium-74.0.3729.157-lp151.2.3.1

Ссылки
Уязвимость openSUSE-SU-2019:1456-1