ZDI-24-284: Adobe Acrobat Reader DC PDF File Parsing Use-After-Free Remote Code Execution Vulnerability

Read Time:17 Second

This vulnerability allows remote attackers to execute arbitrary code on affected installations of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2024-20765.

Read More

chromium-122.0.6261.111-1.el9

Read Time:16 Second

FEDORA-EPEL-2024-c8094838a7

Packages in this update:

chromium-122.0.6261.111-1.el9

Update description:

Upstream security release 122.0.6261.111
* High CVE-2024-2173: Out of bounds memory access in V8
* High CVE-2024-2174: Inappropriate implementation in V8
* High CVE-2024-2176: Use after free in FedCM

Read More

chromium-122.0.6261.111-1.el7

Read Time:16 Second

FEDORA-EPEL-2024-a461023d55

Packages in this update:

chromium-122.0.6261.111-1.el7

Update description:

Upstream security release 122.0.6261.111
* High CVE-2024-2173: Out of bounds memory access in V8
* High CVE-2024-2174: Inappropriate implementation in V8
* High CVE-2024-2176: Use after free in FedCM

Read More

chromium-122.0.6261.111-1.el8

Read Time:16 Second

FEDORA-EPEL-2024-0128b1edbe

Packages in this update:

chromium-122.0.6261.111-1.el8

Update description:

Upstream security release 122.0.6261.111
* High CVE-2024-2173: Out of bounds memory access in V8
* High CVE-2024-2174: Inappropriate implementation in V8
* High CVE-2024-2176: Use after free in FedCM

Read More