Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2024:0327-1

Опубликовано: 07 окт. 2024
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Chromium 129.0.6668.89 (stable released 2024-09-24) (boo#1231232)

  • CVE-2024-7025: Integer overflow in Layout
  • CVE-2024-9369: Insufficient data validation in Mojo
  • CVE-2024-9370: Inappropriate implementation in V8

Список пакетов

SUSE Package Hub 15 SP5
chromedriver-129.0.6668.89-bp156.2.35.1
chromium-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6
chromedriver-129.0.6668.89-bp156.2.35.1
chromium-129.0.6668.89-bp156.2.35.1
openSUSE Leap 15.5
chromedriver-129.0.6668.89-bp156.2.35.1
chromium-129.0.6668.89-bp156.2.35.1
openSUSE Leap 15.6
chromedriver-129.0.6668.89-bp156.2.35.1
chromium-129.0.6668.89-bp156.2.35.1

Описание

Integer overflow in Layout in Google Chrome prior to 129.0.6668.89 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP5:chromium-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.89-bp156.2.35.1

Ссылки

Описание

Insufficient data validation in Mojo in Google Chrome prior to 129.0.6668.89 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP5:chromium-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.89-bp156.2.35.1

Ссылки

Описание

** RESERVED ** This candidate has been reserved by an organization or individual that will use it when announcing a new security problem. When the candidate has been publicized, the details for this candidate will be provided.


Затронутые продукты
SUSE Package Hub 15 SP5:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP5:chromium-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromedriver-129.0.6668.89-bp156.2.35.1
SUSE Package Hub 15 SP6:chromium-129.0.6668.89-bp156.2.35.1

Ссылки