Lucene search

K
redhatRedHatRHSA-2020:4235
HistoryOct 13, 2020 - 8:00 a.m.

(RHSA-2020:4235) Critical: chromium-browser security update

2020-10-1308:00:18
access.redhat.com
36
chromium browser
security update
use after free
integer overflow
insufficient policy enforcement
information leakage

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.011

Percentile

84.7%

Chromium is an open-source web browser, powered by WebKit (Blink).

This update upgrades Chromium to version 86.0.4240.75.

Security Fix(es):

  • chromium-browser: Use after free in payments (CVE-2020-15967)

  • chromium-browser: Use after free in Blink (CVE-2020-15968)

  • chromium-browser: Use after free in WebRTC (CVE-2020-15969)

  • chromium-browser: Use after free in NFC (CVE-2020-15970)

  • chromium-browser: Use after free in printing (CVE-2020-15971)

  • chromium-browser: Use after free in audio (CVE-2020-15972)

  • chromium-browser: Use after free in autofill (CVE-2020-15990)

  • chromium-browser: Use after free in password manager (CVE-2020-15991)

  • chromium-browser: Inappropriate implementation in networking (CVE-2020-6557)

  • chromium-browser: Insufficient policy enforcement in extensions (CVE-2020-15973)

  • chromium-browser: Integer overflow in Blink (CVE-2020-15974)

  • chromium-browser: Integer overflow in SwiftShader (CVE-2020-15975)

  • chromium-browser: Use after free in WebXR (CVE-2020-15976)

  • chromium-browser: Insufficient data validation in dialogs (CVE-2020-15977)

  • chromium-browser: Insufficient data validation in navigation (CVE-2020-15978)

  • chromium-browser: Inappropriate implementation in V8 (CVE-2020-15979)

  • chromium-browser: Insufficient policy enforcement in Intents (CVE-2020-15980)

  • chromium-browser: Out of bounds read in audio (CVE-2020-15981)

  • chromium-browser: Side-channel information leakage in cache (CVE-2020-15982)

  • chromium-browser: Insufficient data validation in webUI (CVE-2020-15983)

  • chromium-browser: Insufficient policy enforcement in Omnibox (CVE-2020-15984)

  • chromium-browser: Inappropriate implementation in Blink (CVE-2020-15985)

  • chromium-browser: Integer overflow in media (CVE-2020-15986)

  • chromium-browser: Use after free in WebRTC (CVE-2020-15987)

  • chromium-browser: Insufficient policy enforcement in networking (CVE-2020-15992)

  • chromium-browser: Insufficient policy enforcement in downloads (CVE-2020-15988)

  • chromium-browser: Uninitialized use in PDFium (CVE-2020-15989)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

EPSS

0.011

Percentile

84.7%