Linuxsecurity
Critical Vulnerabilities in Fedora Chromium Browser Affecting Multiple Versions
Article Content
Recent updates to the Fedora Chromium browser have revealed multiple critical vulnerabilities, including CVE-2026-85046, CVE-2026-85052, and CVE-2026-85043, which involve type confusion, out-of-bounds reads, and improper resource exposure. The vulnerabilities affect Fedora versions 43 and 44, with potential exploitation vectors including crafted web content and malicious scripts. The updates released on September 5, 2026, address these issues, but the presence of proof-of-concept (PoC) code raises concerns about active exploitation. Users are urged to update to version 152.0.7977.82 to mitigate risks. The vulnerabilities were added to the CISA Known Exploited Vulnerabilities (KEV) catalog on September 4, 2026, indicating a heightened risk of exploitation. The scope of impact includes all users of the affected Fedora versions, particularly those using the Chromium browser for web activities.
Key Points: • Multiple critical vulnerabilities identified in Fedora Chromium browser. • Updates released on September 5, 2026, to address these vulnerabilities. • CISA added related CVEs to the KEV catalog, indicating active exploitation risk.
Ask AI about this cluster
Answers cite the sources they use
Analyzing cluster data...
Referenced clusters
Something went wrong. Please try again.