Fedora Security Advisories

chromium-124.0.6367.118-1.fc40

1 week 6 days ago
FEDORA-2024-5cf9499b62 Packages in this update:
  • chromium-124.0.6367.118-1.fc40
Update description:

update to 124.0.6367.118

* High CVE-2024-4331: Use after free in Picture In Picture * High CVE-2024-4368: Use after free in Dawn

update to 124.0.6367.91

update to 124.0.6367.78

* Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn

chromium-124.0.6367.118-1.fc38

1 week 6 days ago
FEDORA-2024-191c252b75 Packages in this update:
  • chromium-124.0.6367.118-1.fc38
Update description:

update to 124.0.6367.118

* High CVE-2024-4331: Use after free in Picture In Picture * High CVE-2024-4368: Use after free in Dawn

update to 124.0.6367.91

chromium-124.0.6367.118-1.el9

1 week 6 days ago
FEDORA-EPEL-2024-808f3961ef Packages in this update:
  • chromium-124.0.6367.118-1.el9
Update description:

update to 124.0.6367.118

* High CVE-2024-4331: Use after free in Picture In Picture * High CVE-2024-4368: Use after free in Dawn

update to 124.0.6367.91

update to 124.0.6367.78

* Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn

update to 124.0.6367.60

  • High CVE-2024-3832: Object corruption in V8
  • High CVE-2024-3833: Object corruption in WebAssembly
  • High CVE-2024-3914: Use after free in V8
  • High CVE-2024-3834: Use after free in Downloads
  • Medium CVE-2024-3837: Use after free in QUIC
  • Medium CVE-2024-3838: Inappropriate implementation in Autofill
  • Medium CVE-2024-3839: Out of bounds read in Fonts
  • Medium CVE-2024-3840: Insufficient policy enforcement in Site Isolation
  • Medium CVE-2024-3841: Insufficient data validation in Browser Switcher
  • Medium CVE-2024-3843: Insufficient data validation in Downloads
  • Low CVE-2024-3844: Inappropriate implementation in Extensions
  • Low CVE-2024-3845: Inappropriate implementation in Network
  • Low CVE-2024-3846: Inappropriate implementation in Prompts
  • Low CVE-2024-3847: Insufficient policy enforcement in WebUI

update to 123.0.6312.122

  • High CVE-2024-3157: Out of bounds write in Compositing
  • High CVE-2024-3516: Heap buffer overflow in ANGLE
  • High CVE-2024-3515: Use after free in Dawn

chromium-124.0.6367.118-1.fc39

1 week 6 days ago
FEDORA-2024-5483bc2adb Packages in this update:
  • chromium-124.0.6367.118-1.fc39
Update description:

update to 124.0.6367.118

* High CVE-2024-4331: Use after free in Picture In Picture * High CVE-2024-4368: Use after free in Dawn

et-6.2.8-2.el8

2 weeks ago
FEDORA-EPEL-2024-f282573e05 Packages in this update:
  • et-6.2.8-2.el8
Update description:

Update to 6.2.8, fixing CVE-2022-48257 and CVE-2022-48258

pypy-7.3.15-3.fc41

2 weeks ago
FEDORA-2024-305522ab38 Packages in this update:
  • pypy-7.3.15-3.fc41
Update description:

Automatic update for pypy-7.3.15-3.fc41.

Changelog * Tue Apr 30 2024 Charalampos Stratakis <cstratak@redhat.com> - 7.3.15-3 - Security fix for CVE-2023-5752 for the bundled pip wheel - Resolves: rhbz#2250771

et-6.2.8-1.fc38

2 weeks ago
FEDORA-2024-bd9e67c117 Packages in this update:
  • et-6.2.8-1.fc38
Update description:

Update to 6.2.8, fixing CVE-2022-48257 and CVE-2022-48258

Unbundle cpp-httlib, fixing CVE-2023-26130

et-6.2.8-1.el9

2 weeks ago
FEDORA-EPEL-2024-90aea0505b Packages in this update:
  • et-6.2.8-1.el9
Update description:

Update to 6.2.8, fixing CVE-2022-48257 and CVE-2022-48258

et-6.2.8-1.fc40

2 weeks ago
FEDORA-2024-b745c97f4b Packages in this update:
  • et-6.2.8-1.fc40
Update description:

Update to 6.2.8, fixing CVE-2022-48257 and CVE-2022-48258

Unbundle cpp-httlib, fixing CVE-2023-26130

et-6.2.8-1.fc39

2 weeks ago
FEDORA-2024-94a155818c Packages in this update:
  • et-6.2.8-1.fc39
Update description:

Update to 6.2.8, fixing CVE-2022-48257 and CVE-2022-48258

Unbundle cpp-httlib, fixing CVE-2023-26130

chromium-124.0.6367.91-1.fc40

2 weeks 1 day ago
FEDORA-2024-0539d2c8b0 Packages in this update:
  • chromium-124.0.6367.91-1.fc40
Update description:

update to 124.0.6367.91

update to 124.0.6367.78

* Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn

chromium-124.0.6367.91-1.el9

2 weeks 1 day ago
FEDORA-EPEL-2024-68b6d0dafe Packages in this update:
  • chromium-124.0.6367.91-1.el9
Update description:

update to 124.0.6367.91

update to 124.0.6367.78

* Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn

update to 124.0.6367.60

  • High CVE-2024-3832: Object corruption in V8
  • High CVE-2024-3833: Object corruption in WebAssembly
  • High CVE-2024-3914: Use after free in V8
  • High CVE-2024-3834: Use after free in Downloads
  • Medium CVE-2024-3837: Use after free in QUIC
  • Medium CVE-2024-3838: Inappropriate implementation in Autofill
  • Medium CVE-2024-3839: Out of bounds read in Fonts
  • Medium CVE-2024-3840: Insufficient policy enforcement in Site Isolation
  • Medium CVE-2024-3841: Insufficient data validation in Browser Switcher
  • Medium CVE-2024-3843: Insufficient data validation in Downloads
  • Low CVE-2024-3844: Inappropriate implementation in Extensions
  • Low CVE-2024-3845: Inappropriate implementation in Network
  • Low CVE-2024-3846: Inappropriate implementation in Prompts
  • Low CVE-2024-3847: Insufficient policy enforcement in WebUI

update to 123.0.6312.122

  • High CVE-2024-3157: Out of bounds write in Compositing
  • High CVE-2024-3516: Heap buffer overflow in ANGLE
  • High CVE-2024-3515: Use after free in Dawn
Checked
52 minutes 3 seconds ago