{"id":"MGASA-2022-0480","summary":"Updated chromium-browser-stable packages fix security vulnerability","details":"The chromium-browser-stable package has been updated to the 108.0.5359.124\nrelease, fixing 8 vulnerabilities.\n\nSome of the security fixes are ...\n\nHigh CVE-2022-4436: Use after free in Blink Media. Reported by Anonymous\non 2022-11-15\n\nHigh CVE-2022-4437: Use after free in Mojo IPC. Reported by\nkoocola(@alo_cook) and Guang Gong of 360 Vulnerability Research\nInstitute on 2022-11-30\n\nHigh CVE-2022-4438: Use after free in Blink Frames. Reported by Anonymous\non 2022-11-07\n\nHigh CVE-2022-4439: Use after free in Aura. Reported by Anonymous on\n2022-11-22\n\nMedium CVE-2022-4440: Use after free in Profiles. Reported by Anonymous on\n2022-11-09\n","modified":"2026-04-16T04:41:24.683896612Z","published":"2022-12-24T09:14:14Z","upstream":["CVE-2022-4436","CVE-2022-4437","CVE-2022-4438","CVE-2022-4439","CVE-2022-4440"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2022-0480.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=31288"},{"type":"WEB","url":"https://chromereleases.googleblog.com/2022/12/stable-channel-update-for-desktop_13.html"}],"affected":[{"package":{"name":"chromium-browser-stable","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"108.0.5359.124-1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2022-0480.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}