Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2025:0133-1

Опубликовано: 20 апр. 2025
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issue:

chromium 135.0.7049.95 (stable release 2025-04-15) (boo#1241288):

  • CVE-2025-3619: Heap buffer overflow in Codecs
  • CVE-2025-3620: Use after free in USB

Список пакетов

SUSE Package Hub 15 SP6
chromedriver-135.0.7049.95-bp156.2.110.1
chromium-135.0.7049.95-bp156.2.110.1
openSUSE Leap 15.6
chromedriver-135.0.7049.95-bp156.2.110.1
chromium-135.0.7049.95-bp156.2.110.1

Описание

Heap buffer overflow in Codecs in Google Chrome on Windows prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Critical)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-135.0.7049.95-bp156.2.110.1
SUSE Package Hub 15 SP6:chromium-135.0.7049.95-bp156.2.110.1
openSUSE Leap 15.6:chromedriver-135.0.7049.95-bp156.2.110.1
openSUSE Leap 15.6:chromium-135.0.7049.95-bp156.2.110.1

Ссылки

Описание

Use after free in USB in Google Chrome prior to 135.0.7049.95 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
SUSE Package Hub 15 SP6:chromedriver-135.0.7049.95-bp156.2.110.1
SUSE Package Hub 15 SP6:chromium-135.0.7049.95-bp156.2.110.1
openSUSE Leap 15.6:chromedriver-135.0.7049.95-bp156.2.110.1
openSUSE Leap 15.6:chromium-135.0.7049.95-bp156.2.110.1

Ссылки