Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.850385
Kategorie:SuSE Local Security Checks
Titel:openSUSE: Security Advisory for Chromium (openSUSE-SU-2012:1637-1)
Zusammenfassung:The remote host is missing an update for the 'Chromium'; package(s) announced via the referenced advisory.
Beschreibung:Summary:
The remote host is missing an update for the 'Chromium'
package(s) announced via the referenced advisory.

Vulnerability Insight:
Chromium was updated to 25.0.1343

* Security Fixes (bnc#791234 and bnc#792154):

- CVE-2012-5131: Corrupt rendering in the Apple OSX
driver for Intel GPUs

- CVE-2012-5133: Use-after-free in SVG filters.

- CVE-2012-5130: Out-of-bounds read in Skia

- CVE-2012-5132: Browser crash with chunked encoding

- CVE-2012-5134: Buffer underflow in libxml.

- CVE-2012-5135: Use-after-free with printing.

- CVE-2012-5136: Bad cast in input element handling.

- CVE-2012-5138: Incorrect file path handling

- CVE-2012-5137: Use-after-free in media source handling

- Correct build so that proprietary codecs can be used when
the chromium-ffmpeg package is installed

- Update to 25.0.1335

* {gtk} Fixed selection renders white text on
white background in apps. (Issue: 158422)

* Fixed translate infobar button to show selected
language. (Issue: 155350)

* Fixed broken Arabic language. (Issue: 158978)

* Fixed pre-rendering if the preference is disabled at
start up. (Issue: 159393)

* Fixed JavaScript rendering issue. (Issue: 159655)

* No further indications in the ChangeLog

* Updated V8 - 3.14.5.0

* Bookmarks are now searched by their title while typing
into the omnibox with matching bookmarks being shown in
the autocomplete suggestions pop-down list. Matching is
done by prefix.

* Fixed chromium issues 155871, 154173, 155133.

- Removed patch chomium-ffmpeg-no-pkgconfig.patch

- Building now internal libffmpegsumo.so based on the
standard chromium ffmpeg codecs

- Add a configuration file (/etc/default/chromium) where we
can indicate flags for the chromium-browser.

- add explicit buildrequire on libbz2-devel

Affected Software/OS:
Chromium on openSUSE 12.1

Solution:
Please install the updated package(s).

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2012-5130
BugTraq ID: 56684
http://www.securityfocus.com/bid/56684
http://osvdb.org/87888
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15734
http://www.securitytracker.com/id?1027815
SuSE Security Announcement: openSUSE-SU-2012:1637 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2012-12/msg00004.html
XForce ISS Database: chrome-skia-code-execution(80292)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80292
Common Vulnerability Exposure (CVE) ID: CVE-2012-5131
http://osvdb.org/87883
Common Vulnerability Exposure (CVE) ID: CVE-2012-5132
http://osvdb.org/87887
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15040
XForce ISS Database: google-chunked-encoding-dos(80293)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80293
Common Vulnerability Exposure (CVE) ID: CVE-2012-5133
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15954
XForce ISS Database: chrome-filters-code-execution(80291)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80291
Common Vulnerability Exposure (CVE) ID: CVE-2012-5134
http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html
http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html
Debian Security Information: DSA-2580 (Google Search)
http://www.debian.org/security/2012/dsa-2580
http://www.mandriva.com/security/advisories?name=MDVSA-2013:056
RedHat Security Advisories: RHSA-2012:1512
http://rhn.redhat.com/errata/RHSA-2012-1512.html
RedHat Security Advisories: RHSA-2013:0217
http://rhn.redhat.com/errata/RHSA-2013-0217.html
http://secunia.com/advisories/51448
http://secunia.com/advisories/54886
http://secunia.com/advisories/55568
SuSE Security Announcement: SUSE-SU-2013:1627 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-11/msg00002.html
SuSE Security Announcement: openSUSE-SU-2013:0178 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2013-01/msg00023.html
http://www.ubuntu.com/usn/USN-1656-1
XForce ISS Database: google-libxml-buffer-underflow(80294)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80294
Common Vulnerability Exposure (CVE) ID: CVE-2012-5135
http://osvdb.org/87886
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15768
XForce ISS Database: google-chrome-printing-code-exec(80295)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80295
Common Vulnerability Exposure (CVE) ID: CVE-2012-5136
http://osvdb.org/87885
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15929
XForce ISS Database: google-input-element-code-exec(80296)
https://exchange.xforce.ibmcloud.com/vulnerabilities/80296
Common Vulnerability Exposure (CVE) ID: CVE-2012-5137
BugTraq ID: 56741
http://www.securityfocus.com/bid/56741
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15819
http://secunia.com/advisories/51447
Common Vulnerability Exposure (CVE) ID: CVE-2012-5138
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15638
CopyrightCopyright (C) 2013 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.