Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2023:0246-1

Опубликовано: 13 сент. 2023
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Update to version 116.0.5845.187 (boo#1215231):

  • CVE-2023-4863: Heap buffer overflow in WebP

Список пакетов

SUSE Package Hub 15 SP4
chromedriver-116.0.5845.187-bp155.2.31.1
chromium-116.0.5845.187-bp155.2.31.1
SUSE Package Hub 15 SP5
chromedriver-116.0.5845.187-bp155.2.31.1
chromium-116.0.5845.187-bp155.2.31.1
openSUSE Leap 15.4
chromedriver-116.0.5845.187-bp155.2.31.1
chromium-116.0.5845.187-bp155.2.31.1
openSUSE Leap 15.5
chromedriver-116.0.5845.187-bp155.2.31.1
chromium-116.0.5845.187-bp155.2.31.1

Описание

Heap buffer overflow in libwebp in Google Chrome prior to 116.0.5845.187 and libwebp 1.3.2 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)


Затронутые продукты
SUSE Package Hub 15 SP4:chromedriver-116.0.5845.187-bp155.2.31.1
SUSE Package Hub 15 SP4:chromium-116.0.5845.187-bp155.2.31.1
SUSE Package Hub 15 SP5:chromedriver-116.0.5845.187-bp155.2.31.1
SUSE Package Hub 15 SP5:chromium-116.0.5845.187-bp155.2.31.1

Ссылки