ELBA-2024-18249

ELBA-2024-18249 - chromium Bug Fix update

Type:BUG
Severity:NA
Release Date:2024-02-19

Description


[121.0.6167.160-1]
- update to 121.0.6167.160
* High CVE-2024-1284: Use after free in Mojo
* High CVE-2024-1283: Heap buffer overflow in Skia

[121.0.6167.139-2]
- Support for 64K pages on Linux/AArch64

[121.0.6167.139-1]
- update to 121.0.6167.139
* High CVE-2024-1060: Use after free in Canvas
* High CVE-2024-1059: Use after free in WebRTC
* High CVE-2024-1077: Use after free in Network

[121.0.6167.85-1]
- update to 121.0.6167.85
* High CVE-2024-0807: Use after free in WebAudio
* High CVE-2024-0812: Inappropriate implementation in Accessibility
* High CVE-2024-0808: Integer underflow in WebUI
* Medium CVE-2024-0810: Insufficient policy enforcement in DevTools
* Medium CVE-2024-0814: Incorrect security UI in Payments
* Medium CVE-2024-0813: Use after free in Reading Mode
* Medium CVE-2024-0806: Use after free in Passwords
* Medium CVE-2024-0805: Inappropriate implementation in Downloads
* Medium CVE-2024-0804: Insufficient policy enforcement in iOS Security UI
* Low CVE-2024-0811: Inappropriate implementation in Extensions API
* Low CVE-2024-0809: Inappropriate implementation in Autofill

[121.0.6167.71-1]
- update to 121.0.6167.71

[120.0.6099.224-2]
- Rebuilt for https://fedoraproject.org/wiki/Fedora_40_Mass_Rebuild




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) chromium-121.0.6167.160-1.el7.src.rpm355f8634e5fdac706dea6652cb37ae00-ol7_x86_64_developer_EPEL
chromedriver-121.0.6167.160-1.el7.x86_64.rpm925ff1c6c835aacf0c112a3e4e9d7051-ol7_x86_64_developer_EPEL
chromium-121.0.6167.160-1.el7.x86_64.rpm3c532d8003dce493b5bac5cc073b0d8e-ol7_x86_64_developer_EPEL
chromium-common-121.0.6167.160-1.el7.x86_64.rpm996ea50e1f3255b32ba369c1316ceab6-ol7_x86_64_developer_EPEL
chromium-headless-121.0.6167.160-1.el7.x86_64.rpm512b4c7426c9c9bdb73c4270c18ef153-ol7_x86_64_developer_EPEL



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete