Fedora Linux 8712 Published by

A chromium security update has been released for Fedora 38.



[SECURITY] Fedora 38 Update: chromium-114.0.5735.198-1.fc38


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2023-b7efbdc392
2023-07-03 01:28:24.685789
--------------------------------------------------------------------------------

Name : chromium
Product : Fedora 38
Version : 114.0.5735.198
Release : 1.fc38
URL : http://www.chromium.org/Home
Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use
Description :
Chromium is an open-source web browser, powered by WebKit (Blink).

--------------------------------------------------------------------------------
Update Information:

Update to 114.0.5735.198. Fixes the following security issues: CVE-2023-3420
CVE-2023-3421 CVE-2023-3422 CVE-2023-36191
--------------------------------------------------------------------------------
ChangeLog:

* Tue Jun 27 2023 Than Ngo [than@redhat.com] - 114.0.5735.198-1
- update to 114.0.5735.198
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2216939 - TRIAGE-CVE-2023-36191 chromium: sqlite: CLI fault on missing -nonce [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2216939
[ 2 ] Bug #2216942 - TRIAGE-CVE-2023-36191 chromium: sqlite: CLI fault on missing -nonce [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2216942
[ 3 ] Bug #2217778 - CVE-2023-3420 CVE-2023-3421 chromium: various flaws [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2217778
[ 4 ] Bug #2217779 - CVE-2023-3420 CVE-2023-3421 chromium: various flaws [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2217779
[ 5 ] Bug #2217781 - CVE-2023-3422 chromium: chromium-browser: Use after free in Guest View [fedora-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2217781
[ 6 ] Bug #2217782 - CVE-2023-3422 chromium: chromium-browser: Use after free in Guest View [epel-all]
https://bugzilla.redhat.com/show_bug.cgi?id=2217782
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2023-b7efbdc392' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------