Security News

Cybersecurity news aggregator

🔓
CRITICAL Vulnerabilities Gentoo GLSA

GLSA 202608-28: Chromium, Google Chrome, Microsoft Edge. Opera: Multiple Vulnerabilities

Multiple critical and high-severity vulnerabilities, including a critical out-of-bounds memory access (CVE-2024-4671, CVSS 9.6) and multiple high-severity flaws, affect Chromium-based browsers. Affected versions include Google Chrome prior to 124.0.6367.201, 124.0.6367.207, and 125.0.6422.76, as detailed in the NVD data. The article states there is no known workaround and mandates immediate patching to the specified fixed versions.
Read Full Article →

Multiple vulnerabilities have been found in Chromium, Google Chrome, Microsoft Edge. Opera. Affected packages Package www-client/chromium on all architectures Affected versions < 128.0.6613.84 Unaffected versions >= 128.0.6613.84 Package www-client/google-chrome on all architectures Affected versions < 128.0.6613.84 Unaffected versions >= 128.0.6613.84 Package www-client/microsoft-edge on all architectures Affected versions < 128.0.2739.42 Unaffected versions >= 128.0.2739.42 Package www-client/opera on all architectures Affected versions < 114.0.5282.21 Unaffected versions >= 114.0.5282.21 Background Chromium is an open-source browser project that aims to build a safer, faster, and more stable way for all users to experience the web. Google Chrome is one fast, simple, and secure browser for all your devices. Microsoft Edge is a browser that combines a minimal design with sophisticated technology to make the web faster, safer, and easier. Opera is a fast and secure web browser. Description Multiple vulnerabilities have been discovered in Chromium, Google Chrome, Microsoft Edge, and Opera. Please review the CVE identifiers referenced below for details. Impact Please review the referenced CVE identifiers for details. Workaround There is no known workaround at this time. Resolution All Chromium users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=www-client/chromium-128.0.6613.84" All Google Chrome users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=www-client/google-chrome-128.0.6613.84" All Microsoft Edge users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=www-client/microsoft-edge-128.0.2739.42" All Opera users should upgrade to the latest version: # emerge --sync # emerge --ask --oneshot --verbose ">=www-client/opera-114.0.5282.21" References CVE-2024-4671 CVE-2024-4761 CVE-2024-5157 CVE-2024-5158 CVE-2024-5159 CVE-2024-5160 CVE-2024-6100 CVE-2024-6101 CVE-2024-6102 CVE-2024-6103 CVE-2024-6290 CVE-2024-6291 CVE-2024-6292 CVE-2024-6293 CVE-2024-6988 CVE-2024-6989 CVE-2024-6991 CVE-2024-6994 CVE-2024-6995 CVE-2024-6996 CVE-2024-6997 CVE-2024-6998 CVE-2024-6999 CVE-2024-7000 CVE-2024-7001 CVE-2024-7003 CVE-2024-7004 CVE-2024-7005 CVE-2024-7532 CVE-2024-7533 CVE-2024-7534 CVE-2024-7535 CVE-2024-7536 CVE-2024-7550 CVE-2024-7964 CVE-2024-7965 CVE-2024-7966 CVE-2024-7967 CVE-2024-7968 CVE-2024-7971 CVE-2024-7972 CVE-2024-7973 CVE-2024-7974 CVE-2024-7975 CVE-2024-7976 CVE-2024-7977 CVE-2024-7978 CVE-2024-7979 CVE-2024-7980 CVE-2024-7981 CVE-2024-8033 CVE-2024-8034 CVE-2024-8035 Release date August 27, 2026 Latest revision August 27, 2026: 1 Severity high Exploitable remote Bugzilla entries 931653 931897 932394 934536 934959 936611 937510 938295

Share this article