Upstream information

CVE-2024-2885 at MITRE

Description

Use after free in Dawn in Google Chrome prior to 123.0.6312.86 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)

Upstream Security Advisories:

SUSE information

Overall state of this security issue: Resolved

This issue is currently rated as having moderate severity.

SUSE Bugzilla entry: 1222035 [RESOLVED / DUPLICATE]

SUSE Security Advisories:

List of released packages

Product(s) Fixed package version(s) References
openSUSE Leap 15.5 NonFree
  • opera >= 109.0.5097.38-lp155.3.42.1
Patchnames:
openSUSE-2024-109
openSUSE Leap 15.6 NonFree
  • opera >= 109.0.5097.45-lp156.2.3.1
Patchnames:
openSUSE-2024-122
openSUSE Tumbleweed
  • chromedriver >= 124.0.6367.201-1.1
  • chromium >= 124.0.6367.201-1.1
Patchnames:
openSUSE-Tumbleweed-2024-13953


SUSE Timeline for this CVE

CVE page created: Tue Mar 26 23:00:14 2024
CVE page last modified: Sun Jun 16 03:03:10 2024