{"id":"MGASA-2022-0318","summary":"Updated chromium-browser-stable packages fix security vulnerability","details":"The chromium-browser-stable package has been updated to the new 105 branch\nwith the 105.0.5195.102 version, fixing many bugs and 25 vulnerabilities. \n\nGoogle is aware of reports that an exploit for CVE-2022-3075 exists in the\nwild. Some of the addressed CVE are listed below:\n\nHigh CVE-2022-3075: Insufficient data validation in Mojo. Reported by\nAnonymous on 2022-08-30\n\nCritical CVE-2022-3038: Use after free in Network Service. Reported by\nSergei Glazunov of Google Project Zero on 2022-06-28\n\nHigh CVE-2022-3039: Use after free in WebSQL. Reported by Nan\nWang(@eternalsakura13) and Guang Gong of 360 Vulnerability Research\nInstitute on 2022-07-11\n\nHigh CVE-2022-3040: Use after free in Layout. Reported by Anonymous on\n2022-07-03\n\nHigh CVE-2022-3041: Use after free in WebSQL. Reported by Ziling Chen and\nNan Wang(@eternalsakura13) of 360 Vulnerability Research Institute on\n2022-07-20\n\nHigh CVE-2022-3042: Use after free in PhoneHub. Reported by\nkoocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute\non 2022-06-22\n\nHigh CVE-2022-3043: Heap buffer overflow in Screen Capture. Reported by\n@ginggilBesel on 2022-06-16\n\nHigh CVE-2022-3044: Inappropriate implementation in Site Isolation.\nReported by Lucas Pinheiro, Microsoft Browser Vulnerability Research on\n2020-02-12\n\nHigh CVE-2022-3045: Insufficient validation of untrusted input in V8.\nReported by Ben Noordhuis \u003cinfo@bnoordhuis.nl\u003e on 2022-06-26\n\nHigh CVE-2022-3046: Use after free in Browser Tag. Reported by Rong Jian\nof VRI on 2022-07-21\n\nHigh CVE-2022-3071: Use after free in Tab Strip. Reported by @ginggilBesel\non 2022-06-06\n\nMedium CVE-2022-3047: Insufficient policy enforcement in Extensions API.\nReported by Maurice Dauer on 2022-07-07\n\nMedium CVE-2022-3048: Inappropriate implementation in Chrome OS\nlockscreen. Reported by Andr.Ess on 2022-03-06\n\nMedium CVE-2022-3049: Use after free in SplitScreen. Reported by\n@ginggilBesel on 2022-04-17\n\nMedium CVE-2022-3050: Heap buffer overflow in WebUI. Reported by Zhihua\nYao of KunLun Lab on 2022-06-17\n\nMedium CVE-2022-3051: Heap buffer overflow in Exosphere. Reported by\n@ginggilBesel on 2022-07-18\n\nMedium CVE-2022-3052: Heap buffer overflow in Window Manager. Reported\nby Khalil Zhani on 2022-07-21\n\nMedium CVE-2022-3053: Inappropriate implementation in Pointer Lock.\nReported by Jesper van den Ende (Pelican Party Studios) on 2021-11-08\n\nMedium CVE-2022-3054: Insufficient policy enforcement in DevTools.\nReported by Kuilin Li on 2022-01-24\n\nMedium CVE-2022-3055: Use after free in Passwords. Reported by Weipeng\nJiang (@Krace) and Guang Gong of 360 Vulnerability Research Institute on\n2022-08-11\n\nLow CVE-2022-3056: Insufficient policy enforcement in Content Security\nPolicy. Reported by Anonymous on 2022-05-26\n\nLow CVE-2022-3057: Inappropriate implementation in iframe Sandbox.\nReported by Gareth Heyes on 2022-06-16\n\nLow CVE-2022-3058: Use after free in Sign-In Flow. Reported by raven at\nKunLun lab on 2022-06-20\n","modified":"2026-04-16T00:10:26.998077709Z","published":"2022-09-04T19:47:19Z","upstream":["CVE-2022-3038","CVE-2022-3039","CVE-2022-3040","CVE-2022-3041","CVE-2022-3042","CVE-2022-3043","CVE-2022-3044","CVE-2022-3045","CVE-2022-3046","CVE-2022-3047","CVE-2022-3048","CVE-2022-3049","CVE-2022-3050","CVE-2022-3051","CVE-2022-3052","CVE-2022-3053","CVE-2022-3054","CVE-2022-3055","CVE-2022-3056","CVE-2022-3057","CVE-2022-3058","CVE-2022-3071","CVE-2022-3075"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2022-0318.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=30802"},{"type":"WEB","url":"https://chromereleases.googleblog.com/2022/08/stable-channel-update-for-desktop_30.html"},{"type":"WEB","url":"https://chromereleases.googleblog.com/2022/09/stable-channel-update-for-desktop.html"},{"type":"WEB","url":"https://blog.chromium.org/2022/08/chrome-105-beta-custom-highlighting.html"}],"affected":[{"package":{"name":"chromium-browser-stable","ecosystem":"Mageia:8","purl":"pkg:rpm/mageia/chromium-browser-stable?arch=source&distro=mageia-8"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"105.0.5195.102-1.mga8"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2022-0318.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}