Chromium Security Update (MINDBREEZE32037)

ID: MINDBREEZE32037 
Affected Components: Mindbreeze InSpire, Mindbreeze InSpire SaaS  
Severity: 7.9 High 
Status: Final 
First published: October 10, 2024 
CVEs: CVE-2024-6772, CVE-2024-6773, CVE-2024-6775, CVE-2024-6776, CVE-2024-6777, CVE-2024-6779, CVE-2024-6989, CVE-2024-6991, CVE-2024-6994, CVE-2024-6996, CVE-2024-6999, CVE-2024-7000, CVE-2024-7001, CVE-2024-7003, CVE-2024-7004, CVE-2024-7005, CVE-2024-6990, CVE-2024-7255, CVE-2024-7256, CVE-2024-7532, CVE-2024-7550, CVE-2024-7534, CVE-2024-7535, CVE-2024-7536, CVE-2024-7965, CVE-2024-7966, CVE-2024-7967, CVE-2024-7968, CVE-2024-7969, CVE-2024-7971, CVE-2024-7972, CVE-2024-7973, CVE-2024-7974, CVE-2024-7976, CVE-2024-7978, CVE-2024-7981 

Summary

  • chromium - Component: Inappropriate implementation in V8.
  • chromium - Component: Type Confusion in V8.
  • chromium - Component: Use after free in Media Stream.
  • chromium - Component: Use after free in Audio.
  • chromium - Component: Use after free in Navigation.
  • chromium - Component: Out of bounds memory access in V8.
  • chromium - Component: Use after free in Loader.
  • chromium - Component: Use after free in Dawn.
  • chromium - Component: Heap buffer overflow in Layout.
  • chromium - Component: Race in Frames.
  • chromium - Component: Inappropriate implementation in FedCM.
  • chromium - Component: Use after free in CSS.
  • chromium - Component: Inappropriate implementation in HTML.
  • chromium - Component: Inappropriate implementation in FedCM.
  • chromium - Component: Insufficient validation of untrusted input in Safe Browsing.
  • chromium - Component: Insufficient validation of untrusted input in Safe Browsing.
  • chromium - Component: Uninitialized Use in Dawn.
  • chromium - Component: Out of bounds read in WebTransport.
  • chromium - Component: Insufficient data validation in Dawn.
  • chromium - Component: Out of bounds memory access in ANGLE.
  • chromium - Component: Type Confusion in V8.
  • chromium - Component: Heap buffer overflow in Layout.
  • chromium - Component: Inappropriate implementation in V8.
  • chromium - Component: Use after free in WebAudio.
  • chromium - Component: Inappropriate implementation in V8.
  • chromium - Component: Out of bounds memory access in Skia.
  • chromium - Component: Heap buffer overflow in Fonts.
  • chromium - Component: Use after free in Autofill.
  • chromium - Component: Type Confusion in V8.
  • chromium - Component: Type confusion in V8.
  • chromium - Component: Inappropriate implementation in V8.
  • chromium - Component: Heap buffer overflow in PDFium.
  • chromium - Component: Insufficient data validation in V8 API.
  • chromium - Component: Inappropriate implementation in FedCM.
  • chromium - Component: Insufficient policy enforcement in Data Transfer.
  • chromium - Component: Inappropriate implementation in Views. 

 

Hotfix Information 

Fixed with following versions of Mindbreeze InSpire On-Premises or Mindbreeze InSpire SaaS: 

  • Mindbreeze InSpire Release 24.6 
  • Mindbreeze InSpire Saas Release 24.6