Skip to content

Security: Alex313031/thorium-legacy

Security

SECURITY.md

Security

Thorium Security Policy

  • If it is a vulnerability in Chromium, please report it upstream Here.
  • If it is a vulnerability in Thorium, file an issue on GitHub. However, if it is major and/or a zero day, please email me instead at [email protected]

List of major vulnerabilities fixed in Thorium

– libwebp WebP bug CVE-2023-4863 - Fixed in M117

– libvpx VP8 bug CVE-2023-5217 - Fixed in M117

– USB data validation bug CVE-2023-5482 - Fixed in M120

– USB integer overflow bug CVE-2023-5849 - Fixed in M120

– Use after free bug CVE-2024-4671 - Fixed in M122.0.6261.171

– Type confusion bug CVE-2024-4947 - Fixed in M122.0.6261.171

There aren’t any published security advisories