Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2025:0059-1

Опубликовано: 14 фев. 2025
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Chromium 133.0.6943.98 (boo#1237121):

  • CVE-2025-0995: Use after free in V8
  • CVE-2025-0996: Inappropriate implementation in Browser UI
  • CVE-2025-0997: Use after free in Navigation
  • CVE-2025-0998: Out of bounds memory access in V8

Список пакетов

SUSE Package Hub 15 SP6
chromedriver-133.0.6943.98-bp156.2.81.2
chromium-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6
chromedriver-133.0.6943.98-bp156.2.81.2
chromium-133.0.6943.98-bp156.2.81.2

Описание

Use after free in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-133.0.6943.98-bp156.2.81.2
SUSE Package Hub 15 SP6:chromium-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromedriver-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromium-133.0.6943.98-bp156.2.81.2

Ссылки

Описание

Inappropriate implementation in Browser UI in Google Chrome on Android prior to 133.0.6943.98 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-133.0.6943.98-bp156.2.81.2
SUSE Package Hub 15 SP6:chromium-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromedriver-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromium-133.0.6943.98-bp156.2.81.2

Ссылки

Описание

Use after free in Navigation in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-133.0.6943.98-bp156.2.81.2
SUSE Package Hub 15 SP6:chromium-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromedriver-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromium-133.0.6943.98-bp156.2.81.2

Ссылки

Описание

Out of bounds memory access in V8 in Google Chrome prior to 133.0.6943.98 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-133.0.6943.98-bp156.2.81.2
SUSE Package Hub 15 SP6:chromium-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromedriver-133.0.6943.98-bp156.2.81.2
openSUSE Leap 15.6:chromium-133.0.6943.98-bp156.2.81.2

Ссылки