First published: Mon Mar 09 2020(Updated: )
Chromium is an open-source web browser, powered by WebKit (Blink).<br>This update upgrades Chromium to version 80.0.3987.122.<br>Security Fix(es):<br><li> ICU: Integer overflow in UnicodeString::doAppend() (BZ#1807349)</li> <li> chromium-browser: Type confusion in V8 (CVE-2020-6383)</li> <li> chromium-browser: Use after free in WebAudio (CVE-2020-6384)</li> <li> chromium-browser: Use after free in speech (CVE-2020-6386)</li> <li> chromium-browser: Out of bounds memory access in streams (CVE-2020-6407)</li> <li> chromium-browser: Type confusion in V8 (CVE-2020-6418)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/chromium-browser | <80.0.3987.122-1.el6_10 | 80.0.3987.122-1.el6_10 |
redhat/chromium-browser-debuginfo | <80.0.3987.122-1.el6_10 | 80.0.3987.122-1.el6_10 |
redhat/chromium-browser | <80.0.3987.122-1.el6_10 | 80.0.3987.122-1.el6_10 |
redhat/chromium-browser-debuginfo | <80.0.3987.122-1.el6_10 | 80.0.3987.122-1.el6_10 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2020:0738 is classified as important.
To fix RHSA-2020:0738, upgrade to chromium-browser version 80.0.3987.122-1.el6_10.
RHSA-2020:0738 addresses an integer overflow in ICU and a type confusion in V8.
The affected version of chromium-browser is anything below 80.0.3987.122-1.el6_10.
Yes, it is recommended to restart your system after applying the updates from RHSA-2020:0738.