Login
Newsletter
Werbung

Sicherheit: Ausführen beliebiger Kommandos in Chromium
Aktuelle Meldungen Distributionen
Name: Ausführen beliebiger Kommandos in Chromium
ID: USN-5350-1
Distribution: Ubuntu
Plattformen: Ubuntu 18.04 LTS
Datum: Mi, 30. März 2022, 07:04
Referenzen: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-1096
Applikationen: Chromium

Originalnachricht


--===============6322047973216306160==
Content-Type: multipart/signed; micalg=pgp-sha512;
protocol="application/pgp-signature";
boundary="ZGiS0Q5IWpPtfppv"
Content-Disposition: inline


--ZGiS0Q5IWpPtfppv
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

==========================================================================
Ubuntu Security Notice USN-5350-1
March 28, 2022

chromium-browser vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 18.04 LTS

Summary:

Chromium could be made to execute arbitrary code if it received a specially
crafted input.

Software Description:
- chromium-browser: Chromium web browser, open-source version of Chrome

Details:

It was discovered that Chromium incorrectly handled certain inputs.
An attacker could possibly use this issue to execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.04 LTS:
chromium-browser 99.0.4844.84-0ubuntu0.18.04.1

This update uses a new upstream release, which includes additional bug
fixes. In general, a standard system update will make all the necessary
changes.

References:
https://ubuntu.com/security/notices/USN-5350-1
CVE-2022-1096

Package Information:
https://launchpad.net/ubuntu/+source/chromium-browser/99.0.4844.84-0ubuntu0.18.04.1

--ZGiS0Q5IWpPtfppv
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----
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=Ych1
-----END PGP SIGNATURE-----

--ZGiS0Q5IWpPtfppv--


--===============6322047973216306160==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung