Bugzilla – Bug 1213920
VUL-0: chromium,ungoogled-chromium: chromium update to 115.0.5790.170
Last modified: 2023-08-07 16:06:09 UTC
The following issues will be fixed with updating chromium to 115.0.5790.170 [1466183] High CVE-2023-4068: Type Confusion in V8 [1465326] High CVE-2023-4069: Type Confusion in V8 [1462951] High CVE-2023-4070: Type Confusion in V8 [1458819] High CVE-2023-4071: Heap buffer overflow in Visuals [1464038] High CVE-2023-4072: Out of bounds read and write in WebGL [1456243] High CVE-2023-4073: Out of bounds memory access in ANGLE [1464113] High CVE-2023-4074: Use after free in Blink Task Scheduling [1457757] High CVE-2023-4075: Use after free in Cast [1459124] High CVE-2023-4076: Use after free in WebRTC [1451146] Medium CVE-2023-4077: Insufficient data validation in Extensions [1461895] Medium CVE-2023-4078: Inappropriate implementation in Extensions References: https://chromereleases.googleblog.com/2023/08/stable-channel-update-for-desktop.html https://crbug.com/1466183
Michal, over to you to copy for ungoogled-chromium, assign back to security-team@suse.de when done
This is an autogenerated message for OBS integration: This bug (1213920) was mentioned in https://build.opensuse.org/request/show/1102107 Factory / chromium https://build.opensuse.org/request/show/1102108 Backports:SLE-15-SP4+Backports:SLE-15-SP5 / chromium
This is an autogenerated message for OBS integration: This bug (1213920) was mentioned in https://build.opensuse.org/request/show/1102416 Factory / ungoogled-chromium
Back to security team
It has not been accepted yet
released, closing
openSUSE-SU-2023:0216-1: An update that fixes 11 vulnerabilities is now available. Category: security (important) Bug References: 1213920 CVE References: CVE-2023-4068,CVE-2023-4069,CVE-2023-4070,CVE-2023-4071,CVE-2023-4072,CVE-2023-4073,CVE-2023-4074,CVE-2023-4075,CVE-2023-4076,CVE-2023-4077,CVE-2023-4078 JIRA References: Sources used: openSUSE Backports SLE-15-SP5 (src): chromium-115.0.5790.170-bp155.2.16.1 openSUSE Backports SLE-15-SP4 (src): chromium-115.0.5790.170-bp154.2.102.1