Búsqueda de    
Vulnerabilidad   
    Buscar 219043 Descripciones CVE y
99761 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.852472
Categoría:SuSE Local Security Checks
Título:openSUSE: Security Advisory for chromium (openSUSE-SU-2019:1324-1)
Resumen:The remote host is missing an update for the 'chromium'; package(s) announced via the openSUSE-SU-2019:1324-1 advisory.
Descripción:Summary:
The remote host is missing an update for the 'chromium'
package(s) announced via the openSUSE-SU-2019:1324-1 advisory.

Vulnerability Insight:
This update for chromium fixes the following issues:

Security update to version 74.0.3729.108 (boo#1133313).

Security issues fixed:

- CVE-2019-5805: Use after free in PDFium

- CVE-2019-5806: Integer overflow in Angle

- CVE-2019-5807: Memory corruption in V8

- CVE-2019-5808: Use after free in Blink

- CVE-2019-5809: Use after free in Blink

- CVE-2019-5810: User information disclosure in Autofill

- CVE-2019-5811: CORS bypass in Blink

- CVE-2019-5813: Out of bounds read in V8

- CVE-2019-5814: CORS bypass in Blink

- CVE-2019-5815: Heap buffer overflow in Blink

- CVE-2019-5818: Uninitialized value in media reader

- CVE-2019-5819: Incorrect escaping in developer tools

- CVE-2019-5820: Integer overflow in PDFium

- CVE-2019-5821: Integer overflow in PDFium

- CVE-2019-5822: CORS bypass in download manager

- CVE-2019-5823: Forced navigation from service worker


Bug fixes:

- Update to 73.0.3686.103:

* Various feature fixes

- Update to 73.0.3683.86:

* Various feature fixes

- Update conditions to use system harfbuzz on TW+

- Require java during build

- Enable using pipewire when available

- Rebase chromium-vaapi.patch to match up the Fedora one

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended
installation methods
like YaST online_update or 'zypper patch'.

Alternatively you can run the command listed for your product:

- openSUSE Leap 42.3:

zypper in -t patch openSUSE-2019-1324=1

Affected Software/OS:
'chromium' package(s) on openSUSE Leap 42.3.

Solution:
Please install the updated package(s).

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2019-5805
Bugtraq: 20190813 [SECURITY] [DSA 4500-1] chromium security update (Google Search)
https://seclists.org/bugtraq/2019/Aug/19
Debian Security Information: DSA-4500 (Google Search)
https://www.debian.org/security/2019/dsa-4500
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FKN4GPMBQ3SDXWB4HL45II5CZ7P2E4AI/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CPM7VPE27DUNJLXM4F5PAAEFFWOEND6X/
https://security.gentoo.org/glsa/201908-18
https://chromereleases.googleblog.com/2019/04/stable-channel-update-for-desktop_23.html
https://crbug.com/913320
SuSE Security Announcement: openSUSE-SU-2019:1666 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2019-06/msg00085.html
Common Vulnerability Exposure (CVE) ID: CVE-2019-5806
https://crbug.com/943087
Common Vulnerability Exposure (CVE) ID: CVE-2019-5807
https://crbug.com/945644
Common Vulnerability Exposure (CVE) ID: CVE-2019-5808
https://crbug.com/947029
Common Vulnerability Exposure (CVE) ID: CVE-2019-5809
https://crbug.com/941008
Common Vulnerability Exposure (CVE) ID: CVE-2019-5810
https://crbug.com/916838
Common Vulnerability Exposure (CVE) ID: CVE-2019-5811
https://crbug.com/771815
Common Vulnerability Exposure (CVE) ID: CVE-2019-5813
https://crbug.com/942699
Common Vulnerability Exposure (CVE) ID: CVE-2019-5814
https://crbug.com/930057
Common Vulnerability Exposure (CVE) ID: CVE-2019-5815
https://bugs.chromium.org/p/chromium/issues/detail?id=930663
https://gitlab.gnome.org/GNOME/libxslt/commit/08b62c25871b38d5d573515ca8a065b4b8f64f6b
Common Vulnerability Exposure (CVE) ID: CVE-2019-5818
https://crbug.com/929962
Common Vulnerability Exposure (CVE) ID: CVE-2019-5819
https://crbug.com/919356
Common Vulnerability Exposure (CVE) ID: CVE-2019-5820
https://crbug.com/919635
Common Vulnerability Exposure (CVE) ID: CVE-2019-5821
https://crbug.com/919640
Common Vulnerability Exposure (CVE) ID: CVE-2019-5822
https://crbug.com/926105
Common Vulnerability Exposure (CVE) ID: CVE-2019-5823
https://crbug.com/930154
CopyrightCopyright (C) 2019 Greenbone Networks GmbH

Esta es sólo una de 99761 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2024 E-Soft Inc. Todos los derechos reservados.