RHSA-2018:3803-01 -- Redhat chromium-browser, chromium-browser-debuginfoID: oval:org.secpod.oval:def:505413 | Date: (C)2021-01-04 (M)2022-09-22 |
Class: PATCH | Family: unix |
Chromium is an open-source web browser, powered by WebKit . This update upgrades Chromium to version 71.0.3578.80. Security Fix: * chromium-browser: Out of bounds write in V8 * chromium-browser: Use after frees in PDFium * chromium-browser: Heap buffer overflow in Skia * chromium-browser: Use after free in PDFium * chromium-browser: Use after free in Blink * chromium-browser: Heap buffer overflow in Canvas * chromium-browser: Use after free in WebAudio * chromium-browser: Use after free in MediaRecorder * chromium-browser: Heap buffer overflow in Blink * chromium-browser: Out of bounds write in V8 * chromium-browser: Use after free in Skia * chromium-browser: Inappropriate implementation in Extensions * chromium-browser: Inappropriate implementation in Site Isolation * chromium-browser: Incorrect security UI in Blink * chromium-browser: Inappropriate implementation in Navigation * chromium-browser: Inappropriate implementation in Omnibox * chromium-browser: Insufficient policy enforcement in Blink * chromium-browser: Insufficient policy enforcement in Blink * chromium-browser: Insufficient policy enforcement in Navigation * chromium-browser: Inappropriate implementation in Media * chromium-browser: Inappropriate implementation in Network Authentication * chromium-browser: Insufficient data validation in Shell Integration * chromium-browser: Insufficient policy enforcement in URL Formatter * chromium-browser: Use after free in Skia * chromium-browser: Insufficient policy enforcement in URL Formatter * chromium-browser: Insufficient policy enforcement in Proxy * chromium-browser: Out of bounds read in V8 For more details about the security issue, including the impact, a CVSS score, and other related information, refer to the CVE page listed in the References section.
Platform: |
Red Hat Enterprise Linux 6 |
Product: |
chromium-browser |
chromium-browser-debuginfo |