Anfälligkeitssuche        Suche in 324607 CVE Beschreibungen
und 145615 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.1.10.2024.0190
Kategorie:Mageia Linux Local Security Checks
Titel:Mageia: Security Advisory (MGASA-2024-0190)
Zusammenfassung:The remote host is missing an update for the 'chromium-browser-stable' package(s) announced via the MGASA-2024-0190 advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'chromium-browser-stable' package(s) announced via the MGASA-2024-0190 advisory.

Vulnerability Insight:
The chromium-browser-stable package has been updated to the
125.0.6422.60 release. It includes 9 security fixes.
Please, do note, only x86_64 is supported from now on.
i586 support for linux was stopped some years ago and the community is
not able to provide patches anymore for the latest Chromium code.
Some of the security fixes are:
* CVE-2024-4947: Type Confusion in V8. Reported by Vasily Berdnikov
(@vaber_b) and Boris Larin (@oct0xor) of Kaspersky on 2024-05-13
* High CVE-2024-4948: Use after free in Dawn. Reported by wgslfuzz on
2024-04-09
* Medium CVE-2024-4949: Use after free in V8. Reported by Ganjiang
Zhou(@refrain_areu) of ChaMd5-H1 team on 2024-02-24
* Low CVE-2024-4950: Inappropriate implementation in Downloads. Reported
by Shaheen Fazim on 2023-06-06
Google is aware that an exploit for CVE-2024-4947 exists in the wild.

Affected Software/OS:
'chromium-browser-stable' package(s) on Mageia 9.

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2024-4947
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NTSN22LNYXMWHVTYNOYQVOY7VDZFHENQ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/6G7EYH2JAK5OJPVNC6AXYQ5K7YGYNCDN/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WSUWM73ZCXTN62AT2REYQDD5ZKPFMDZD/
https://chromereleases.googleblog.com/2024/05/stable-channel-update-for-desktop_15.html
https://issues.chromium.org/issues/340221135
Common Vulnerability Exposure (CVE) ID: CVE-2024-4948
https://issues.chromium.org/issues/333414294
Common Vulnerability Exposure (CVE) ID: CVE-2024-4949
https://issues.chromium.org/issues/326607001
Common Vulnerability Exposure (CVE) ID: CVE-2024-4950
https://issues.chromium.org/issues/40065403
CopyrightCopyright (C) 2024 Greenbone AG

Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2025 E-Soft Inc. Alle Rechte vorbehalten.