Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2020:1737-1

Опубликовано: 25 окт. 2020
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

  • Update to 86.0.4240.111 boo#1177936
    • CVE-2020-16000: Inappropriate implementation in Blink.
    • CVE-2020-16001: Use after free in media.
    • CVE-2020-16002: Use after free in PDFium.
    • CVE-2020-15999: Heap buffer overflow in Freetype.
    • CVE-2020-16003: Use after free in printing.

Список пакетов

openSUSE Leap 15.2
chromedriver-86.0.4240.111-lp152.2.42.1
chromium-86.0.4240.111-lp152.2.42.1

Описание

Heap buffer overflow in Freetype in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2:chromedriver-86.0.4240.111-lp152.2.42.1
openSUSE Leap 15.2:chromium-86.0.4240.111-lp152.2.42.1

Ссылки

Описание

Inappropriate implementation in Blink in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2:chromedriver-86.0.4240.111-lp152.2.42.1
openSUSE Leap 15.2:chromium-86.0.4240.111-lp152.2.42.1

Ссылки

Описание

Use after free in media in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2:chromedriver-86.0.4240.111-lp152.2.42.1
openSUSE Leap 15.2:chromium-86.0.4240.111-lp152.2.42.1

Ссылки

Описание

Use after free in PDFium in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.


Затронутые продукты
openSUSE Leap 15.2:chromedriver-86.0.4240.111-lp152.2.42.1
openSUSE Leap 15.2:chromium-86.0.4240.111-lp152.2.42.1

Ссылки

Описание

Use after free in printing in Google Chrome prior to 86.0.4240.111 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2:chromedriver-86.0.4240.111-lp152.2.42.1
openSUSE Leap 15.2:chromium-86.0.4240.111-lp152.2.42.1

Ссылки