--------------------------------------------------------------------------------
Fedora EPEL Update Notification
FEDORA-EPEL-2025-f5a60417d6
2025-09-07 00:24:15.035856+00:00
--------------------------------------------------------------------------------

Name        : chromium
Product     : Fedora EPEL 10.2
Version     : 140.0.7339.80
Release     : 1.el10_2
URL         : http://www.chromium.org/Home
Summary     : A WebKit (Blink) powered web browser that Google doesn't want you 
to use
Description :
Chromium is an open-source web browser, powered by WebKit (Blink).

--------------------------------------------------------------------------------
Update Information:

Update to 140.0.7339.80
CVE-2025-9864: Use after free in V8
CVE-2025-9865: Inappropriate implementation in Toolbar
CVE-2025-9866: Inappropriate implementation in Extensions
    CVE-2025-9867: Inappropriate implementation in Downloads
--------------------------------------------------------------------------------
ChangeLog:

* Wed Sep  3 2025 Than Ngo <[email protected]> - 140.0.7339.80-1
- Update to 140.0.7339.80
  * CVE-2025-9864: Use after free in V8
  * CVE-2025-9865: Inappropriate implementation in Toolbar
  * CVE-2025-9866: Inappropriate implementation in Extensions
    CVE-2025-9867: Inappropriate implementation in Downloads
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #2390724 - CVE-2025-4609 chromium: Incorrect handle provided in 
unspecified circumstances in Mojo [epel-10]
        https://bugzilla.redhat.com/show_bug.cgi?id=2390724
  [ 2 ] Bug #2390727 - CVE-2025-4609 chromium: Incorrect handle provided in 
unspecified circumstances in Mojo [epel-9]
        https://bugzilla.redhat.com/show_bug.cgi?id=2390727
  [ 3 ] Bug #2390730 - CVE-2025-4609 chromium: Incorrect handle provided in 
unspecified circumstances in Mojo [fedora-41]
        https://bugzilla.redhat.com/show_bug.cgi?id=2390730
  [ 4 ] Bug #2390732 - CVE-2025-4609 chromium: Incorrect handle provided in 
unspecified circumstances in Mojo [fedora-42]
        https://bugzilla.redhat.com/show_bug.cgi?id=2390732
  [ 5 ] Bug #2392285 - CVE-2025-9478 chromium: Use after free in ANGLE [epel-10]
        https://bugzilla.redhat.com/show_bug.cgi?id=2392285
  [ 6 ] Bug #2392288 - CVE-2025-9478 chromium: Use after free in ANGLE [epel-9]
        https://bugzilla.redhat.com/show_bug.cgi?id=2392288
  [ 7 ] Bug #2392291 - CVE-2025-9478 chromium: Use after free in ANGLE 
[fedora-41]
        https://bugzilla.redhat.com/show_bug.cgi?id=2392291
--------------------------------------------------------------------------------

This update can be installed with the "yum" update programs.  Use
su -c 'yum update chromium' at the command line.
For more information, refer to "YUM", available at
https://access.redhat.com/documentation/en-US/Red_Hat_Enterprise_Linux/7\
/html/System_Administrators_Guide/ch-yum.html

All packages are signed with the Fedora EPEL GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

-- 
_______________________________________________
epel-package-announce mailing list -- 
[email protected]
To unsubscribe send an email to 
[email protected]
Fedora Code of Conduct: 
https://docs.fedoraproject.org/en-US/project/code-of-conduct/
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: 
https://lists.fedoraproject.org/archives/list/[email protected]
Do not reply to spam, report it: 
https://pagure.io/fedora-infrastructure/new_issue

Reply via email to