Bug 41963

Summary: Запрос на обновление до версии 98.0.4758.102 в связи c несколькими CVE
Product: Branch p9 Reporter: saber <79625490833>
Component: chromium-gostAssignee: qa-team <qa-team>
Status: CLOSED FIXED QA Contact: qa-p9 <qa-p9>
Severity: major    
Priority: P5 CC: george, yalmara
Version: не указанаKeywords: security
Hardware: all   
OS: Linux   
URL: https://chromereleases.googleblog.com/2022/02/stable-channel-update-for-desktop_14.html

Description saber 2022-02-15 22:33:08 MSK
[15000$] [1290008] High CVE-2022-0603: Use after free in File Manager. Reported by Chaoyuan Peng (@ret2happy) on 2022-01-22

[$7000][1273397] High CVE-2022-0604: Heap buffer overflow in Tab Groups. Reported by Krace on 2021-11-24

[$7000][1286940] High CVE-2022-0605: Use after free in Webstore API. Reported by Thomas Orlita on 2022-01-13

[$7000][1288020] High CVE-2022-0606: Use after free in ANGLE. Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. on 2022-01-17

[$TBD][1250655] High CVE-2022-0607: Use after free in GPU. Reported by 0x74960 on 2021-09-17

[$NA][1270333] High CVE-2022-0608: Integer overflow in Mojo. Reported by Sergei Glazunov of Google Project Zero on 2021-11-16

[$NA][1296150] High CVE-2022-0609: Use after free in Animation. Reported by Adam Weidemann and Clément Lecigne of Google's Threat Analysis Group on 2022-02-10

[$TBD][1285449] Medium CVE-2022-0610: Inappropriate implementation in Gamepad API. Reported by Anonymous on 2022-01-08
Comment 1 JK 2022-02-23 13:57:41 MSK
Хотелось бы не только для Сизифа и p9 и p8 кое где работают, дырка то нехорошая