{"id":"MGASA-2024-0017","summary":"Updated chromium-browser-stable packages fix security vulnerabilities","details":"The chromium-browser-stable package has been updated to the\n120.0.6099.224 release. 4 vulnerabilities are fixed; some of them are\nlisted below:\nHigh CVE-2024-0517: Out of bounds write in V8. Reported by Toan (suto)\nPham of Qrious Secure on 2024-01-06.\nHigh CVE-2024-0518: Type Confusion in V8. Reported by Ganjiang\nZhou(@refrain_areu) of ChaMd5-H1 team on 2023-12-03.\nHigh CVE-2024-0519: Out of bounds memory access in V8. Reported by\nAnonymous on 2024-01-11.\nGoogle is aware of reports that an exploit for CVE-2024-0519 exists in\nthe wild.\n","modified":"2026-04-16T04:41:28.246201307Z","published":"2024-01-25T11:21:08Z","upstream":["CVE-2024-0517","CVE-2024-0518","CVE-2024-0519"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2024-0017.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=32725"},{"type":"WEB","url":"https://chromereleases.googleblog.com/2024/01/stable-channel-update-for-desktop_16.html"}],"affected":[{"package":{"name":"chromium-browser-stable","ecosystem":"Mageia:9","purl":"pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-9"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"120.0.6099.224-1.mga9.tainted"}]}],"ecosystem_specific":{"section":"tainted"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2024-0017.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}