FreeBSD : chromium -- multiple vulnerabilities (b81ad6d6-8633-11eb-99c5-e09467587c17)

high Nessus Plugin ID 147848

Synopsis

The remote FreeBSD host is missing a security-related update.

Description

Chrome Releases reports :

This release includes 5 security fixes, including :

- [1167357] High CVE-2021-21191: Use after free in WebRTC. Reported by raven (@raid_akame) on 2021-01-15

- [1181387] High CVE-2021-21192: Heap buffer overflow in tab groups.
Reported by Abdulrahman Alqabandi, Microsoft Browser Vulnerability Research on 2021-02-23

- [1186287] High CVE-2021-21193: Use after free in Blink. Reported by Anonymous on 2021-03-09

Solution

Update the affected package.

See Also

http://www.nessus.org/u?e129313f

http://www.nessus.org/u?932814a2

Plugin Details

Severity: High

ID: 147848

File Name: freebsd_pkg_b81ad6d6863311eb99c5e09467587c17.nasl

Version: 1.2

Type: local

Published: 3/17/2021

Updated: 1/9/2024

Supported Sensors: Nessus

Vulnerability Information

CPE: p-cpe:/a:freebsd:freebsd:chromium, cpe:/o:freebsd:freebsd

Required KB Items: Host/local_checks_enabled, Host/FreeBSD/release, Host/FreeBSD/pkg_info

Exploit Ease: No known exploits are available

Patch Publication Date: 3/16/2021

Vulnerability Publication Date: 3/12/2021

Reference Information

CVE: CVE-2021-11191, CVE-2021-11192, CVE-2021-11193