Fedora Linux 9173 Published by

Fedora Linux 41 has received an update for Chromium, a WebKit-powered web browser. The new version, chromium-139.0.7258.138-1.fc41, addresses a security issue with CVE-2025-9132: Out of bounds write in V8.

Fedora 41 Update: chromium-139.0.7258.138-1.fc41



[SECURITY] Fedora 41 Update: chromium-139.0.7258.138-1.fc41


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2025-2392144625
2025-08-29 01:51:32.233893+00:00
--------------------------------------------------------------------------------

Name : chromium
Product : Fedora 41
Version : 139.0.7258.138
Release : 1.fc41
URL : http://www.chromium.org/Home
Summary : A WebKit (Blink) powered web browser that Google doesn't want you to use
Description :
Chromium is an open-source web browser, powered by WebKit (Blink).

--------------------------------------------------------------------------------
Update Information:

Updated to 139.0.7258.138
CVE-2025-9132: Out of bounds write in V8
--------------------------------------------------------------------------------
ChangeLog:

* Fri Aug 22 2025 Than Ngo [than@redhat.com] - 139.0.7258.138-1
- Updated to 139.0.7258.138
* CVE-2025-9132: Out of bounds write in V8
* Wed Aug 20 2025 Dominik Mierzejewski [dominik@greysector.net] - 139.0.7258.127-2
- Drop unused yasm build dependency
see https://fedoraproject.org/wiki/Changes/DeprecateYASM
--------------------------------------------------------------------------------
References:

[ 1 ] Bug #2390067 - CVE-2025-9132 chromium: From CVEorg collector [epel-10]
https://bugzilla.redhat.com/show_bug.cgi?id=2390067
[ 2 ] Bug #2390068 - CVE-2025-9132 chromium: From CVEorg collector [epel-8]
https://bugzilla.redhat.com/show_bug.cgi?id=2390068
[ 3 ] Bug #2390070 - CVE-2025-9132 chromium: From CVEorg collector [epel-9]
https://bugzilla.redhat.com/show_bug.cgi?id=2390070
[ 4 ] Bug #2390073 - CVE-2025-9132 chromium: From CVEorg collector [fedora-41]
https://bugzilla.redhat.com/show_bug.cgi?id=2390073
[ 5 ] Bug #2390075 - CVE-2025-9132 chromium: From CVEorg collector [fedora-42]
https://bugzilla.redhat.com/show_bug.cgi?id=2390075
--------------------------------------------------------------------------------

This update can be installed with the "dnf" update program. Use
su -c 'dnf upgrade --advisory FEDORA-2025-2392144625' at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------

--