[FEDORA-2018-fd194a1f14] Fedora 28: chromium

Severity Critical
Affected Packages 1
CVEs 20

Security fix for CVE-2018-17478 CVE-2018-17479. Update to 70.0.3538.110. ----
Update to chromium 70.0.3538.77. Fixes CVE-2018-16435 CVE-2018-17462
CVE-2018-17463 CVE-2018-17464 CVE-2018-17465 CVE-2018-17466 CVE-2018-17467
CVE-2018-17468 CVE-2018-17469 CVE-2018-17470 CVE-2018-17471 CVE-2018-17473
CVE-2018-17474 CVE-2018-17475 CVE-2018-17476 CVE-2018-5179 CVE-2018-17477

Package Affected Version
pkg:rpm/fedora/chromium?distro=fedora-28 < 70.0.3538.110.1.fc28
Source # ID Name URL
Bugzilla 1640103 Bug #1640103 - CVE-2018-17467 chromium-browser: URL spoof in Omnibox https://bugzilla.redhat.com/show_bug.cgi?id=1640103
Bugzilla 1640104 Bug #1640104 - CVE-2018-17468 chromium-browser: Cross-origin URL disclosure in Blink https://bugzilla.redhat.com/show_bug.cgi?id=1640104
Bugzilla 1640115 Bug #1640115 - CVE-2018-17477 chromium-browser: UI spoof in Extensions https://bugzilla.redhat.com/show_bug.cgi?id=1640115
Bugzilla 1640106 Bug #1640106 - CVE-2018-17470 chromium-browser: Memory corruption in GPU Internals https://bugzilla.redhat.com/show_bug.cgi?id=1640106
Bugzilla 1640110 Bug #1640110 - CVE-2018-17473 chromium-browser: URL spoof in Omnibox https://bugzilla.redhat.com/show_bug.cgi?id=1640110
Bugzilla 1640105 Bug #1640105 - CVE-2018-17469 chromium-browser: Heap buffer overflow in PDFium https://bugzilla.redhat.com/show_bug.cgi?id=1640105
Bugzilla 1640107 Bug #1640107 - CVE-2018-17471 chromium-browser: Security UI occlusion in full screen mode https://bugzilla.redhat.com/show_bug.cgi?id=1640107
Bugzilla 1640098 Bug #1640098 - CVE-2018-17462 chromium-browser: Sandbox escape in AppCache https://bugzilla.redhat.com/show_bug.cgi?id=1640098
Bugzilla 1640118 Bug #1640118 - chromium-browser: Heap buffer overflow in lcms in PDFium https://bugzilla.redhat.com/show_bug.cgi?id=1640118
Bugzilla 1640108 Bug #1640108 - CVE-2018-17472 chromium-browser: iframe sandbox escape on iOS https://bugzilla.redhat.com/show_bug.cgi?id=1640108
Bugzilla 1640112 Bug #1640112 - CVE-2018-17475 chromium-browser: URL spoof in Omnibox https://bugzilla.redhat.com/show_bug.cgi?id=1640112
Bugzilla 1651487 Bug #1651487 - CVE-2018-17479 chromium-browser: Use-after-free in GPU https://bugzilla.redhat.com/show_bug.cgi?id=1651487
Bugzilla 1640099 Bug #1640099 - CVE-2018-17463 chromium-browser: Remote code execution in V8 https://bugzilla.redhat.com/show_bug.cgi?id=1640099
Bugzilla 1648855 Bug #1648855 - CVE-2018-17478 chromium-browser: Out of bounds memory access in V8 https://bugzilla.redhat.com/show_bug.cgi?id=1648855
Bugzilla 1640111 Bug #1640111 - CVE-2018-17474 chromium-browser: Use after free in Blink https://bugzilla.redhat.com/show_bug.cgi?id=1640111
Bugzilla 1640114 Bug #1640114 - CVE-2018-5179 chromium-browser: Lack of limits on update() in ServiceWorker https://bugzilla.redhat.com/show_bug.cgi?id=1640114
Bugzilla 1640100 Bug #1640100 - CVE-2018-17464 chromium-browser: URL spoof in Omnibox https://bugzilla.redhat.com/show_bug.cgi?id=1640100
Bugzilla 1640101 Bug #1640101 - CVE-2018-17465 chromium-browser: Use after free in V8 https://bugzilla.redhat.com/show_bug.cgi?id=1640101
Bugzilla 1640102 Bug #1640102 - CVE-2018-17466 chromium-browser: Memory corruption in Angle https://bugzilla.redhat.com/show_bug.cgi?id=1640102
Bugzilla 1640113 Bug #1640113 - CVE-2018-17476 chromium-browser: Security UI occlusion in full screen mode https://bugzilla.redhat.com/show_bug.cgi?id=1640113
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/chromium?distro=fedora-28 fedora chromium < 70.0.3538.110.1.fc28 fedora-28
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...