Bug 2540923

Summary: CVE-2026-79246 CVE-2026-79247 CVE-2026-79248 CVE-2026-79249 CVE-2026-79250 CVE-2026-79251 CVE-2026-79252 CVE-2026-79253 CVE-2026-79254 CVE-2026-79255 CVE-2026-79257 CVE-2026-79258 CVE-2026-79259 CVE-2026-79260 ... chromium: various flaws [epel-all]
Product: [Fedora] Fedora EPEL Reporter: Dhananjay Arunesh <darunesh>
Component: chromiumAssignee: Than Ngo <than>
Status: CLOSED ERRATA QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: urgent Docs Contact:
Priority: urgent    
Version: epel10CC: go-sig, pigpigman8686, spotrh, suraj.ghimire7, than, yaneti
Target Milestone: ---Keywords: Security, SecurityTracking
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard: {"flaws": ["5b58be69-2d67-4500-8a37-006da887876f", "32cc58ae-2524-4689-9dbf-ffd2a3551162", "62bc8e46-bd96-4478-b425-4f4edeb89733", "2614b261-c4a4-4495-b317-a4095703e045", "b601cfdd-923e-4d55-88b3-1dc5eae884a3", "9b76848c-00a3-46de-82b3-3974989caaa7", "d525bd95-0c8e-45eb-a228-db16a1aba4c8", "cc6341d6-e97e-46a8-9e34-28a87d6e9ac6", "ffec3150-8068-4163-a8b7-40e7165bdb91", "cb938267-7e90-4f4d-bccd-e6d6bd2de0a4", "eeeeeda2-71c3-4c34-a78e-73923616eadb", "a1c076bb-dc8f-4409-a6a9-3cb0ce6d105e", "3d6098c2-3b62-481d-8fad-1c22a178593e", "8c94bd28-6166-4a03-a0ee-91e50211b4fc", "36620221-66b9-4b18-9495-abbe763c09df", "b9008e1e-b6b9-471b-8a91-1618b52a2b38", "e5b3c825-9bb5-447c-9773-c9b2e98c9fd1", "c195323c-d769-4e91-8893-015831ed89ee", "9f36e1eb-171c-4950-9c9b-f3b1786c33e5", "f2a651fc-f3f8-42c3-81e3-84aecf032e02", "aee87727-110a-4d0d-933e-9698c01be8ae", "fad2aa80-0e0d-4fdf-af24-b1b2a41f0023", "ef8ba5c6-1a12-48ec-b946-8ca4c8f6d193", "8d48d21e-c1fe-49ac-b7b2-2485f5b0c137", "2827264d-6b56-47b1-9c04-11eb0770444a", "ba092551-4ca8-448d-a0ee-8fe18a52e0ca", "b4500626-9394-49ce-ad95-0c16c322c08a", "31b62c79-c5ca-457d-87b0-e5714c1b4b0a", "4e18a6f6-9286-46c0-bdbd-168c8c4d3837", "999b9394-f9cc-4ebb-8ede-e73e820e1546", "d4b76ae7-e6f0-43d5-a220-bb11320cdc94", "91869908-376e-4221-a1c6-19bc70d38a7e", "9b04f360-42b0-4af0-bf3a-97f9dfb7509e", "1dc91797-3276-4245-82b4-548e2f7c5cfe", "0cf4ccea-c8ae-4164-8b36-82bab9705226", "f7957d5c-2e4e-4e80-b763-20f460e3881f", "554c8439-5172-4d19-91b2-ffe265009942", "3c14dd25-2623-4c4b-b700-67488dfebd28", "20afb1ae-05d2-4859-beb6-35091b8d0926", "5396b981-13ef-4edc-8a2f-08e2645409a2", "4b0668f6-ca3e-4508-8b90-a0811dfb55d4"]}
Fixed In Version: chromium-154.0.8037.57-1.fc45 chromium-154.0.8037.57-1.el10_4 chromium-154.0.8037.57-1.el10_3 chromium-154.0.8037.57-1.fc44 chromium-154.0.8037.57-1.el9 chromium-154.0.8037.57-1.fc43 Doc Type: ---
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2026-09-26 00:17:17 UTC Type: ---
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2523788, 2523796, 2523801, 2523802, 2523808, 2523814, 2523822, 2523825, 2523831, 2523848, 2523870, 2523887, 2523901, 2523906, 2523914, 2523918, 2523926, 2523939, 2523942, 2523959, 2523964, 2523983, 2523997, 2523999, 2524006, 2524022, 2524026, 2524037, 2524041, 2524048, 2524053, 2524059, 2524062, 2524064, 2524069, 2524071, 2524083, 2524094, 2524096, 2524099, 2524105    

Description Dhananjay Arunesh 2026-09-25 04:53:29 UTC
Disclaimer: Community trackers are created by Red Hat Product Security team on a best effort basis. Package maintainers are required to ascertain if the flaw indeed affects their package, before starting the update process.

Information leak in DataTransfer in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Low)

Use after free in Chromoting in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to execute arbitrary code outside the sandbox via crafted network traffic. (Chromium security severity: High)

Incorrect authorization in Input in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Code injection in Bisection in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted file. (Chromium security severity: Medium)

UI misrepresentation in Navigation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof address bar via a crafted HTML page. (Chromium security severity: Medium)

Improper input validation in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Information leak in ServiceWorker in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Improper input validation in Network in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to leak sensitive information via a crafted HTML page. (Chromium security severity: Low)

Incorrect reference resolution in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Low)

Improper input validation in WebRTC in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Use after free in Views in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Improper input validation in Safebrowsing in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass system access restrictions via a crafted file. (Chromium security severity: Medium)

Improper input validation in Cookies in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)

Incorrect authorization in Controls in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)

Incorrect authorization in Network in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Race condition in Extensions in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code inside the sandbox via crafted network traffic. (Chromium security severity: Low)

Incorrect reference resolution in Preload in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Use after free in DevTools in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to execute arbitrary code inside the sandbox via a crafted Chrome extension. (Chromium security severity: Medium)

Race condition in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to read memory outside the sandbox via a crafted HTML page. (Chromium security severity: Medium)

Information leak in DOM in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

Improper input validation in FindInPage in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Incorrect reference resolution in WebView in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Low)

Information leak in GPU in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: High)

Use after free in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Use after free in ANGLE in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

UI misrepresentation in Geometry in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to spoof UI elements via a crafted HTML page. (Chromium security severity: Medium)

UI misrepresentation in Core in Google Chrome on on Mac prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to spoof UI elements via a crafted HTML page. (Chromium security severity: Low)

Uninitialized resource in ANGLE in Google Chrome on on Windows prior to 152.0.7977.65 allowed a remote attacker to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Missing authorization in CustomTabs in Google Chrome on on Android prior to 152.0.7977.65 allowed a local attacker to potentially execute arbitrary code outside the sandbox via a co-installed app. (Chromium security severity: Medium)

Observable discrepancy in Forms in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

Improper control of a resource through its lifetime in Workers in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to bypass site isolation via a crafted HTML page. (Chromium security severity: Low)

Use after free in Aura in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)

Information leak in CSS in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

Integer overflow in Chromecast in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)

Information leak in Animation in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

Incorrect authorization in WebXR in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to obtain cross-origin data via a crafted HTML page. (Chromium security severity: Medium)

Incomplete cleanup in GetUserMedia in Google Chrome prior to 152.0.7977.65 allowed a remote attacker who had compromised the renderer process and leveraged social engineering to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)

Uninitialized resource in ANGLE in Google Chrome prior to 152.0.7977.65 allowed a remote attacker to potentially bypass web origin policy via a crafted HTML page. (Chromium security severity: Medium)

Improper privilege management in FileSystem in Google Chrome prior to 152.0.7977.65 allowed a remote attacker leveraging social engineering to bypass system access restrictions via a crafted HTML page. (Chromium security severity: Medium)

Improper input validation in Autofill in Google Chrome on on Android prior to 152.0.7977.65 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: High)

Comment 1 Fedora Update System 2026-09-25 09:45:41 UTC
FEDORA-EPEL-2026-355d0a235d (chromium-154.0.8037.57-1.el10_3) has been submitted as an update to Fedora EPEL 10.3.
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-355d0a235d

Comment 2 Fedora Update System 2026-09-25 09:45:53 UTC
FEDORA-EPEL-2026-130a6951ed (chromium-154.0.8037.57-1.el9) has been submitted as an update to Fedora EPEL 9.
https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-130a6951ed

Comment 3 Fedora Update System 2026-09-25 09:46:06 UTC
FEDORA-2026-1e015b5959 (chromium-154.0.8037.57-1.fc44) has been submitted as an update to Fedora 44.
https://bodhi.fedoraproject.org/updates/FEDORA-2026-1e015b5959

Comment 4 Fedora Update System 2026-09-26 00:17:17 UTC
FEDORA-2026-735231f9e0 (chromium-154.0.8037.57-1.fc45) has been pushed to the Fedora 45 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 5 Fedora Update System 2026-09-26 02:01:22 UTC
FEDORA-EPEL-2026-130a6951ed has been pushed to the Fedora EPEL 9 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-130a6951ed

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 6 Fedora Update System 2026-09-26 02:04:23 UTC
FEDORA-2026-1e015b5959 has been pushed to the Fedora 44 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-1e015b5959`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-1e015b5959

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 7 Fedora Update System 2026-09-26 02:14:52 UTC
FEDORA-EPEL-2026-0004b04067 has been pushed to the Fedora EPEL 10.4 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-0004b04067

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 8 Fedora Update System 2026-09-26 02:17:53 UTC
FEDORA-EPEL-2026-355d0a235d has been pushed to the Fedora EPEL 10.3 testing repository.

You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2026-355d0a235d

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 9 Fedora Update System 2026-09-26 02:27:38 UTC
FEDORA-2026-8729b61cd3 has been pushed to the Fedora 43 testing repository.
Soon you'll be able to install the update with the following command:
`sudo dnf upgrade --enablerepo=updates-testing --refresh --advisory=FEDORA-2026-8729b61cd3`
You can provide feedback for this update here: https://bodhi.fedoraproject.org/updates/FEDORA-2026-8729b61cd3

See also https://fedoraproject.org/wiki/QA:Updates_Testing for more information on how to test updates.

Comment 10 Fedora Update System 2026-09-27 00:26:56 UTC
FEDORA-EPEL-2026-0004b04067 (chromium-154.0.8037.57-1.el10_4) has been pushed to the Fedora EPEL 10.4 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 11 Fedora Update System 2026-09-27 00:46:32 UTC
FEDORA-EPEL-2026-355d0a235d (chromium-154.0.8037.57-1.el10_3) has been pushed to the Fedora EPEL 10.3 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 12 Fedora Update System 2026-09-27 00:57:41 UTC
FEDORA-2026-1e015b5959 (chromium-154.0.8037.57-1.fc44) has been pushed to the Fedora 44 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 13 Fedora Update System 2026-09-29 00:28:32 UTC
FEDORA-EPEL-2026-130a6951ed (chromium-154.0.8037.57-1.el9) has been pushed to the Fedora EPEL 9 stable repository.
If problem still persists, please make note of it in this bug report.

Comment 14 Fedora Update System 2026-09-29 00:44:06 UTC
FEDORA-2026-8729b61cd3 (chromium-154.0.8037.57-1.fc43) has been pushed to the Fedora 43 stable repository.
If problem still persists, please make note of it in this bug report.