[FEDORA-2023-0cd03c3746] Fedora 37: chromium

Severity High
Affected Packages 1
CVEs 4

update to 117.0.5938.132. Fixes following security issues: CVE-2023-5129
CVE-2023-5186

Package Affected Version
pkg:rpm/fedora/chromium?distro=fedora-37 < 117.0.5938.132.1.fc37
ID
FEDORA-2023-0cd03c3746
Severity
high
Severity from
CVE-2023-5186
URL
https://bodhi.fedoraproject.org/updates/FEDORA-2023-0cd03c3746
Published
2023-10-02T00:40:35
(11 months ago)
Modified
2023-10-02T00:40:35
(11 months ago)
Rights
Copyright 2023 Red Hat, Inc.
Other Advisories
Source # ID Name URL
Bugzilla 2239523 Bug #2239523 - chromium chrashes with SIGILL on BTI capable systems (Apple M2) https://bugzilla.redhat.com/show_bug.cgi?id=2239523
Bugzilla 2241194 Bug #2241194 - CVE-2023-5186 CVE-2023-5187 CVE-2023-5217 chromium: various flaws [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241194
Bugzilla 2241119 Bug #2241119 - CVE-2023-5129 chromium: libwebp: out-of-bounds write with a specially crafted WebP lossless file [epel-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241119
Bugzilla 2241195 Bug #2241195 - CVE-2023-5186 CVE-2023-5187 CVE-2023-5217 chromium: various flaws [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241195
Bugzilla 2241120 Bug #2241120 - CVE-2023-5129 chromium: libwebp: out-of-bounds write with a specially crafted WebP lossless file [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=2241120
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/fedora/chromium?distro=fedora-37 fedora chromium < 117.0.5938.132.1.fc37 fedora-37
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...