MGASA-2022-0211

Source
https://advisories.mageia.org/MGASA-2022-0211.html
Import Source
https://advisories.mageia.org/MGASA-2022-0211.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2022-0211
Related
Published
2022-05-28T08:56:13Z
Modified
2022-05-28T08:00:24Z
Summary
Updated chromium-browser-stable packages fix security vulnerability
Details

The chromium-browser-stable package has been updated to the 102.0.5005.61 version, fixing many bugs and 32 CVE. Some of them are listed below: CVE-2022-1853: Use after free in Indexed DB. CVE-2022-1854: Use after free in ANGLE. CVE-2022-1855: Use after free in Messaging. CVE-2022-1856: Use after free in User Education. CVE-2022-1857: Insufficient policy enforcement in File System API. CVE-2022-1858: Out of bounds read in DevTools. CVE-2022-1859: Use after free in Performance Manager. CVE-2022-1860: Use after free in UI Foundations. CVE-2022-1861: Use after free in Sharing. CVE-2022-1862: Inappropriate implementation in Extensions. CVE-2022-1863: Use after free in Tab Groups. CVE-2022-1864: Use after free in WebApp Installs. CVE-2022-1865: Use after free in Bookmarks. CVE-2022-1866: Use after free in Tablet Mode. CVE-2022-1867: Insufficient validation of untrusted input in Data Transfer. CVE-2022-1868: Inappropriate implementation in Extensions API. CVE-2022-1869: Type Confusion in V8. CVE-2022-1870: Use after free in App Service. CVE-2022-1871: Insufficient policy enforcement in File System API. CVE-2022-1872: Insufficient policy enforcement in Extensions API. CVE-2022-1873: Insufficient policy enforcement in COOP. CVE-2022-1874: Insufficient policy enforcement in Safe Browsing. CVE-2022-1875: Inappropriate implementation in PDF. CVE-2022-1876: Heap buffer overflow in DevTools. Various fixes from internal audits, fuzzing and other initiatives.

References
Credits

Affected packages

Mageia:8 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
102.0.5005.61-1.mga8

Ecosystem specific

{
    "section": "core"
}