| Summary: | chromium-browser-stable new security issue fixed in 99.0.4844.84 | ||
|---|---|---|---|
| Product: | Mageia | Reporter: | David Walser <luigiwalser> |
| Component: | Security | Assignee: | QA Team <qa-bugs> |
| Status: | RESOLVED FIXED | QA Contact: | Sec team <security> |
| Severity: | critical | ||
| Priority: | Normal | CC: | andrewsfarm, chb0, davidwhodgins, joselp, sysadmin-bugs |
| Version: | 8 | Keywords: | advisory, validated_update |
| Target Milestone: | --- | ||
| Hardware: | All | ||
| OS: | Linux | ||
| Whiteboard: | MGA8-64-OK | ||
| Source RPM: | chromium-browser-stable-99.0.4844.74-1.mga8.src.rpm | CVE: | |
| Status comment: | |||
|
Description
David Walser
2022-03-26 16:43:53 CET
David Walser
2022-03-26 16:44:07 CET
CC:
(none) =>
chb0 Hi Chromium 100 will be available in a few days. I propose to go directly to it. Or do you want me still to update 99? It's being exploited in the wild. If we can build this version now, let's do it (priority being on Mageia 8). Hi. Build is on-going -> heads-up to QA Assignee:
cjw =>
chb0
christian barranco
2022-03-27 13:25:50 CEST
CC:
(none) =>
sysadmin-bugs
David Walser
2022-03-28 02:07:47 CEST
CC:
sysadmin-bugs =>
(none) Hi. Package is now ready for QA testing in core-update_testing ADVISORY NOTICE PROPOSAL ======================== Updated chromium-browser-stable packages fix a security exploit and bugs Description The chromium-browser-stable package has been updated to 99.0.4844.84 that fixes one security vulnerability and many bugs (together with 99.0.4844.82). [1309225] High CVE-2022-1096: Type Confusion in V8. Reported by anonymous on 2022-03-23 Google is aware that an exploit for CVE-2022-1096 exists in the wild. References https://bugs.mageia.org/show_bug.cgi?id=30208 https://chromereleases.googleblog.com/2022/03/stable-channel-update-for-desktop_25.html https://chromereleases.googleblog.com/2022/03/stable-channel-update-for-desktop_20.html SRPMS 8/core chromium-browser-stable-99.0.4844.84-1.mga8 PROVIDED PACKAGES ================= x86_64 chromium-browser-99.0.4844.84-1.mga8.x86_64.rpm chromium-browser-stable-99.0.4844.84-1.mga8.x86_64.rpm i586 chromium-browser-99.0.4844.84-1.mga8.i586.rpm chromium-browser-stable-99.0.4844.84-1.mga8.i586.rpm Assignee:
chb0 =>
qa-bugs Hi, Updated in Vbox from the last version of Chromium. Works fine for the moment. Video y audio ok, youtube ok, addons ok, banks ok, Greetings! CC:
(none) =>
joselp MGA8-64 Plasma, i5-2500, Intel graphics, wired Internet. No installation issues. Not my usual browser, so I probably won't give it an extended test. However, I did try several websites, watched a video of the local TV weather forecast, checked out a fishing forum, looked at a root zone moisture map, and made my way here. No issues noted. CC:
(none) =>
andrewsfarm No regressions noticed. Advisory committed to svn. Validating the update. Keywords:
(none) =>
advisory, validated_update An update for this issue has been pushed to the Mageia Updates repository. https://advisories.mageia.org/MGASA-2022-0118.html Status:
NEW =>
RESOLVED |