Mageia alert MGASA-2019-0304 (chromium-browser-stable)
| From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
| To: | updates-announce@ml.mageia.org | |
| Subject: | [updates-announce] MGASA-2019-0304: Updated chromium-browser-stable packages fix security vulnerabilities | |
| Date: | Wed, 23 Oct 2019 23:07:56 +0200 | |
| Message-ID: | <20191023210756.53B179F739@duvel.mageia.org> |
MGASA-2019-0304 - Updated chromium-browser-stable packages fix security vulnerabilities Publication date: 23 Oct 2019 URL: https://advisories.mageia.org/MGASA-2019-0304.html Type: security Affected Mageia releases: 7 CVE: CVE-2019-13693, CVE-2019-13694, CVE-2019-13695, CVE-2019-13696, CVE-2019-13697 Description: Chromium-browser 77.0.3865.120 fixes security issues: Four use-after-free bugs were found in Chromium 77.0.3865.90: one in the IndexedDB component (CVE-2019-13693), one in the WebRTC component (CVE-2019-13694), one in the audio component (CVE-2019-13695), and one in the V8 component (CVE-2019-13696). A cross-origin size leak (CVE-2019-13697) was also fixed, as well as various problems found using internal audits, fuzzing and other initiatives. References: - https://bugs.mageia.org/show_bug.cgi?id=25580 - https://chromereleases.googleblog.com/2019/10/stable-chan... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1... SRPMS: - 7/core/chromium-browser-stable-77.0.3865.120-1.mga7
