[GLSA-202012-05] Chromium, Google Chrome: Multiple vulnerabilities

Severity Normal
Affected Packages 2
Unaffected Packages 2
CVEs 26

Multiple vulnerabilities have been found in Chromium and Google Chrome, the worst of which could result in the arbitrary execution of code.

Background
Chromium is an open-source browser project that aims to build a safer,
faster, and more stable way for all users to experience the web.

Google Chrome is one fast, simple, and secure browser for all your
devices.

Description
Multiple vulnerabilities have been discovered in Chromium and Google
Chrome. Please review the CVE identifiers referenced below for details.

Impact
Please review the referenced CVE identifiers for details.

Workaround
There is no known workaround at this time.

Resolution
All Chromium users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose
">=www-client/chromium-87.0.4280.88"

All Google Chrome users should upgrade to the latest version:

# emerge --sync
# emerge --ask --oneshot --verbose
">=www-client/google-chrome-87.0.4280.88"

Source # ID Name URL
CVE CVE-2020-16014 CVE-2020-16014 https://nvd.nist.gov/vuln/detail/CVE-2020-16014
CVE CVE-2020-16015 CVE-2020-16015 https://nvd.nist.gov/vuln/detail/CVE-2020-16015
CVE CVE-2020-16018 CVE-2020-16018 https://nvd.nist.gov/vuln/detail/CVE-2020-16018
CVE CVE-2020-16019 CVE-2020-16019 https://nvd.nist.gov/vuln/detail/CVE-2020-16019
CVE CVE-2020-16020 CVE-2020-16020 https://nvd.nist.gov/vuln/detail/CVE-2020-16020
CVE CVE-2020-16021 CVE-2020-16021 https://nvd.nist.gov/vuln/detail/CVE-2020-16021
CVE CVE-2020-16022 CVE-2020-16022 https://nvd.nist.gov/vuln/detail/CVE-2020-16022
CVE CVE-2020-16023 CVE-2020-16023 https://nvd.nist.gov/vuln/detail/CVE-2020-16023
CVE CVE-2020-16024 CVE-2020-16024 https://nvd.nist.gov/vuln/detail/CVE-2020-16024
CVE CVE-2020-16025 CVE-2020-16025 https://nvd.nist.gov/vuln/detail/CVE-2020-16025
CVE CVE-2020-16026 CVE-2020-16026 https://nvd.nist.gov/vuln/detail/CVE-2020-16026
CVE CVE-2020-16027 CVE-2020-16027 https://nvd.nist.gov/vuln/detail/CVE-2020-16027
CVE CVE-2020-16028 CVE-2020-16028 https://nvd.nist.gov/vuln/detail/CVE-2020-16028
CVE CVE-2020-16029 CVE-2020-16029 https://nvd.nist.gov/vuln/detail/CVE-2020-16029
CVE CVE-2020-16030 CVE-2020-16030 https://nvd.nist.gov/vuln/detail/CVE-2020-16030
CVE CVE-2020-16031 CVE-2020-16031 https://nvd.nist.gov/vuln/detail/CVE-2020-16031
CVE CVE-2020-16032 CVE-2020-16032 https://nvd.nist.gov/vuln/detail/CVE-2020-16032
CVE CVE-2020-16033 CVE-2020-16033 https://nvd.nist.gov/vuln/detail/CVE-2020-16033
CVE CVE-2020-16034 CVE-2020-16034 https://nvd.nist.gov/vuln/detail/CVE-2020-16034
CVE CVE-2020-16036 CVE-2020-16036 https://nvd.nist.gov/vuln/detail/CVE-2020-16036
CVE CVE-2020-16037 CVE-2020-16037 https://nvd.nist.gov/vuln/detail/CVE-2020-16037
CVE CVE-2020-16038 CVE-2020-16038 https://nvd.nist.gov/vuln/detail/CVE-2020-16038
CVE CVE-2020-16039 CVE-2020-16039 https://nvd.nist.gov/vuln/detail/CVE-2020-16039
CVE CVE-2020-16040 CVE-2020-16040 https://nvd.nist.gov/vuln/detail/CVE-2020-16040
CVE CVE-2020-16041 CVE-2020-16041 https://nvd.nist.gov/vuln/detail/CVE-2020-16041
CVE CVE-2020-16042 CVE-2020-16042 https://nvd.nist.gov/vuln/detail/CVE-2020-16042
Bugzilla 755227 Bugzilla #755227 https://bugs.gentoo.org/show_bug.cgi?id=755227
Bugzilla 758368 Bugzilla #758368 https://bugs.gentoo.org/show_bug.cgi?id=758368
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:ebuild/www-client/google-chrome?distro=gentoo www-client google-chrome < 87.0.4280.88 gentoo
Unaffected pkg:ebuild/www-client/google-chrome?distro=gentoo www-client google-chrome >= 87.0.4280.88 gentoo
Affected pkg:ebuild/www-client/chromium?distro=gentoo www-client chromium < 87.0.4280.88 gentoo
Unaffected pkg:ebuild/www-client/chromium?distro=gentoo www-client chromium >= 87.0.4280.88 gentoo
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...