Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2023:0131-1

Опубликовано: 16 июн. 2023
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Chromium 114.0.5735.133 (boo#1212302):

  • CVE-2023-3214: Use after free in Autofill payments
  • CVE-2023-3215: Use after free in WebRTC
  • CVE-2023-3216: Type Confusion in V8
  • CVE-2023-3217: Use after free in WebXR
  • Various fixes from internal audits, fuzzing and other initiatives

Список пакетов

SUSE Package Hub 15 SP5
chromedriver-114.0.5735.133-bp155.2.7.1
chromium-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5
chromedriver-114.0.5735.133-bp155.2.7.1
chromium-114.0.5735.133-bp155.2.7.1

Описание

Use after free in Autofill payments in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.133-bp155.2.7.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromedriver-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromium-114.0.5735.133-bp155.2.7.1

Ссылки

Описание

Use after free in WebRTC in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.133-bp155.2.7.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromedriver-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromium-114.0.5735.133-bp155.2.7.1

Ссылки

Описание

Type confusion in V8 in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.133-bp155.2.7.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromedriver-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromium-114.0.5735.133-bp155.2.7.1

Ссылки

Описание

Use after free in WebXR in Google Chrome prior to 114.0.5735.133 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-114.0.5735.133-bp155.2.7.1
SUSE Package Hub 15 SP5:chromium-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromedriver-114.0.5735.133-bp155.2.7.1
openSUSE Leap 15.5:chromium-114.0.5735.133-bp155.2.7.1

Ссылки