Stable Channel Update for ChromeOS/ChromeOS Flex

The Stable channel is being updated to 114.0.5735.119 (Platform version: 15437.42.0) for most ChromeOS devices and will be rolled out over the next few days. This build contains a number of bug fixes and security updates.

Cole Brown,

Google ChromeOS

Security Fixes and Rewards

Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.

[$TBD] [1434231] Medium CVE-TBD Security:heap-buffer-overflow in rewrite_1d_image_coordinate. Reported by rinngo

[$TBD] [1433506] High CVE-TBD heap-use-after-free in vrend_draw_bind_abo_shader. Reported by rinngo

[$TBD] [1433468] High CVE-TBD Security:stack buffer overflow in  set_stream_out_varyings. Reported by rinngo

[$TBD] [1430089] High CVE-TBD UAF in sampler_state. Reported by rinngo

[$TBD] [1443107] High CVE-TBD Race Condition in amdgpu_ttm_tt_get_user_pages

[$TBD] [1443292] High CVE-TBD Adb wireless debugging bugfix bypass. Reported by Les Amateurs Team

[$TBD] [1394226] Unsigned code execution on enrolled devices via modified RMA shim