update to 124.0.6367.78 * Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn
Release 4.2.0
* bsc#1213470 * bsc#1222979 * bsc#1222983 * bsc#1222984 * bsc#1222986
* bsc#1213470 * bsc#1222979 * bsc#1222983 * bsc#1222984 * bsc#1222986
The investigation uncovered at least 40,000 phishing domains that were linked to LabHost and tricked victims into handing over their sensitive details
CVE-2024-3852: GetBoundName in the JIT returned the wrong object CVE-2024-3854: Out-of-bounds-read after mis-optimized switch statement CVE-2024-3857: Incorrect JITting of arguments led to use-after-free during garbage collection CVE-2024-2609: Permission prompt input delay could expire when not in
update to 124.0.6367.78 * Critical CVE-2024-4058: Type Confusion in ANGLE * High CVE-2024-4059: Out of bounds read in V8 API * High CVE-2024-4060: Use after free in Dawn
CVE-2024-3852: GetBoundName in the JIT returned the wrong object CVE-2024-3854: Out-of-bounds-read after mis-optimized switch statement CVE-2024-3857: Incorrect JITting of arguments led to use-after-free during garbage collection CVE-2024-2609: Permission prompt input delay could expire when not in
The chromium-browser-stable package has been updated to the 124.0.6367.60 release. It includes 23 security fixes. Please, do note, only x86_64 is supported from now on. i586 support for linux was stopped some years ago and the community is not able to provide patches anymore for the latest Chromium code.
https://security-tracker.debian.org/tracker/DSA-5674-1
The director of the Apollo 11 movie shares his views about the role of technology in addressing pressing global challenges as well as why he became involved with Starmus.
* bsc#1219217 * jsc#PED-3360 * jsc#PED-3361 Cross-References:
* bsc#1213269 * bsc#1218889 * bsc#1222843 * bsc#1222845
* bsc#1222842 Cross-References: * CVE-2024-3651
* bsc#1222950 Cross-References: * CVE-2024-1135
* bsc#1222857 * bsc#1222858 Cross-References: * CVE-2024-2756
* bsc#1222857 * bsc#1222858 Cross-References: * CVE-2024-2756
https://security-tracker.debian.org/tracker/DSA-5675-1
We spoke to Michel Mayor about the importance of public engagement with science and fostering responsibility among the youth for the preservation of our changing planet
Dr. Israelian talks about Starmus’s vision and mission, the importance of inspiring and engaging audiences, and the strong sense of community within the Starmus universe
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
Several security issues were fixed in Thunderbird.
Fix for CVE-2024-31497
Fix for CVE-2024-31497
The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 9 have been uploaded to the Unbreakable Linux Network:
* bsc#1217325 Cross-References: * CVE-2023-26364
* bsc#1217325 Cross-References: * CVE-2023-26364
* bsc#1118590 * bsc#874743 Cross-References: * CVE-2014-2913
* bsc#1219887 * bsc#1219912 * bsc#1220371 * jsc#MSQA-759 * jsc#PED-7893
Google Guest Agent and OS Config Agent could be made to crash if it open a specially crafted JSON.
* bsc#1213269 * bsc#1218889 * bsc#1220134 * bsc#1222843 * bsc#1222845
* bsc#1190011 * bsc#1198038 * bsc#1207205 * bsc#1212850 * bsc#1213925
* bsc#1223155 Cross-References: * CVE-2024-31744
The following updated rpms for Oracle Linux 6 Extended Lifecycle Support (ELS) have been uploaded to the Unbreakable Linux Network:
The following updated rpms for Oracle Linux 7 have been uploaded to the Unbreakable Linux Network:
https://security-tracker.debian.org/tracker/DSA-5673-1
Several vulnerabilities have been discovered in the OpenJDK Java runtime, which may result in denial of service or information disclosure. For Debian 10 buster, these problems have been fixed in version
Pillow could be made to crash or run programs as an administrator if it opened a specially crafted file.
percona-xtrabackup could be made to run programs as your login if it opened a specially crafted file.
* bsc#1221793 * bsc#1221797 Cross-References: * CVE-2024-29131
* bsc#1198101 * bsc#1205588 * bsc#1205855 * bsc#1210382 * bsc#1213945
* bsc#1219435 Cross-References: * CVE-2024-1086
https://security-tracker.debian.org/tracker/DSA-5672-1
https://security-tracker.debian.org/tracker/DSA-5671-1
https://security-tracker.debian.org/tracker/DSA-5670-1
https://security-tracker.debian.org/tracker/DSA-5669-1
Security issues were discovered in Chromium, which could result in the execution of arbitrary code, denial of service or information disclosure.
What are the risks and consequences of having your health data exposed and what are the steps to take if it happens to you?
What are some of the most common giveaway signs that the person behind the screen or on the other end of the line isn’t who they claim to be?
From promoting questionable content to posing security risks, inappropriate ads present multiple dangers for children. Here’s how to help them stay safe.
Almost 400 people in India and Pakistan have fallen victim to an ongoing Android espionage campaign called eXotic Visit
Here’s how cybercriminals target cryptocurrencies and how you can keep your bitcoin or other crypto safe
Should children’s apps come with ‘warning labels’? Here’s how to make sure your children’s digital playgrounds are safe places to play and learn.
Temu’s cash giveaway where people were asked to hand over vast amounts of their personal data to the platform puts the spotlight on the data-slurping practices of online services today
update to 124.0.6367.60 High CVE-2024-3832: Object corruption in V8 High CVE-2024-3833: Object corruption in WebAssembly High CVE-2024-3914: Use after free in V8 High CVE-2024-3834: Use after free in Downloads
