Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2024:0314-1

Опубликовано: 27 сент. 2024
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Chromium 129.0.6668.70 (stable released 2024-09-24) (boo#1230964)

  • CVE-2024-9120: Use after free in Dawn
  • CVE-2024-9121: Inappropriate implementation in V8
  • CVE-2024-9122: Type Confusion in V8
  • CVE-2024-9123: Integer overflow in Skia
  • bump BR for nodejs to minimal 20.0

Список пакетов

SUSE Package Hub 15 SP6
chromedriver-129.0.6668.70-bp156.2.32.1
chromium-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6
chromedriver-129.0.6668.70-bp156.2.32.1
chromium-129.0.6668.70-bp156.2.32.1

Описание

Use after free in Dawn in Google Chrome on Windows prior to 129.0.6668.70 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.70-bp156.2.32.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromedriver-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromium-129.0.6668.70-bp156.2.32.1

Ссылки

Описание

Inappropriate implementation in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to potentially perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.70-bp156.2.32.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromedriver-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromium-129.0.6668.70-bp156.2.32.1

Ссылки

Описание

Type Confusion in V8 in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform out of bounds memory access via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.70-bp156.2.32.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromedriver-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromium-129.0.6668.70-bp156.2.32.1

Ссылки

Описание

Integer overflow in Skia in Google Chrome prior to 129.0.6668.70 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.70-bp156.2.32.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromedriver-129.0.6668.70-bp156.2.32.1
openSUSE Leap 15.6:chromium-129.0.6668.70-bp156.2.32.1

Ссылки