MGASA-2023-0044

Source
https://advisories.mageia.org/MGASA-2023-0044.html
Import Source
https://advisories.mageia.org/MGASA-2023-0044.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2023-0044
Related
Published
2023-02-14T22:43:23Z
Modified
2023-02-14T21:31:33Z
Summary
Updated chromium-browser-stable packages fix security vulnerability
Details

The chromium-browser-stable package has been updated to the 109.0.5414.119 release, fixing 6 vulnerabilities.

Some of the security fixes are: High CVE-2023-0471: Use after free in WebTransport. Reported by chichoo Kim(chichoo) and Cassidy Kim(@cassidy6564) on 2022-10-19 High CVE-2023-0472: Use after free in WebRTC. Reported by Cassidy Kim(@cassidy6564) on 2023-01-06 Medium CVE-2023-0473: Type Confusion in ServiceWorker API. Reported by raven at KunLun lab on 2023-01-03 Medium CVE-2023-0474: Use after free in GuestView. Reported by avaue at S.S.L on 2022-12-14

References
Credits

Affected packages

Mageia:8 / chromium-browser-stable

Package

Name
chromium-browser-stable
Purl
pkg:rpm/mageia/chromium-browser-stable?distro=mageia-8

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
109.0.5414.119-1.mga8

Ecosystem specific

{
    "section": "core"
}