Revisions of chromium

Richard Brown's avatar Richard Brown (RBrownSUSE) accepted request 912804 from Andreas Stieger's avatar Andreas Stieger (AndreasStieger) (revision 302)
- Chromium 92.0.4515.159 (boo#1189490):
  * CVE-2021-30598: Type Confusion in V8
  * CVE-2021-30599: Type Confusion in V8
  * CVE-2021-30600: Use after free in Printing
  * CVE-2021-30601: Use after free in Extensions API
  * CVE-2021-30602: Use after free in WebRTC
  * CVE-2021-30603: Race in WebAudio
  * CVE-2021-30604: Use after free in ANGLE
  * Various fixes from internal audits, fuzzing and other initiatives
- Add missing crashpad_handler (boo#1189254)
Richard Brown's avatar Richard Brown (RBrownSUSE) accepted request 910522 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 301)
92.0.4515.131
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 906869 from Andreas Stieger's avatar Andreas Stieger (AndreasStieger) (revision 299)
- chromium 91.0.4472.164 (boo#1188373)
  * CVE-2021-30559: Out of bounds write in ANGLE
  * CVE-2021-30541: Use after free in V8
  * CVE-2021-30560: Use after free in Blink XSLT
  * CVE-2021-30561: Type Confusion in V8
  * CVE-2021-30562: Use after free in WebSerial
  * CVE-2021-30563: Type Confusion in V8
  * CVE-2021-30564: Heap buffer overflow in WebXR
  * Various fixes from internal audits, fuzzing and other initiatives
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 904064 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 298)
- Add chromium-91-sql-standard-layout-type.patch: to fix SQL being
  incorrect with libstdc++ 11
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 901249 from Andreas Stieger's avatar Andreas Stieger (AndreasStieger) (revision 297)
fix crash upon exit boo#1186948
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 900774 from Andreas Stieger's avatar Andreas Stieger (AndreasStieger) (revision 296)
Chromium 91.0.4472.114 (boo#1187481)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 899022 from Andreas Stieger's avatar Andreas Stieger (AndreasStieger) (revision 295)
chromium 91.0.4472.101 (boo#1187141)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 897189 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 294)
- Add README.SUSE
- Fix aarch64 build:
  * chromium-91-libyuv-aarch64.patch
  * Update highway to 0.12.2 (arm only)
- Add -flax-vector-conversions to build flags
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 895838 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 293)
- Chromium 91.0.4472.77 (boo#1186458):
  * Support Managed configuration API for Web Applications
  * WebOTP API: cross-origin iframe support
  * CSS custom counter styles
  * Support JSON Modules
  * Clipboard: read-only files support
  * Remove webkitBeforeTextInserted & webkitEditableCOntentChanged
    JS events
  * Honor media HTML attribute for link icon
  * Import Assertions
  * Class static initializer blocks
  * Ergonomic brand checks for private fields
  * Expose WebAssembly SIMD
  * New Feature: WebTransport
  * ES Modules for service workers ('module' type option)
  * Suggested file name and location for the File System Access API
  * adaptivePTime property for RTCRtpEncodingParameters
  * Block HTTP port 10080 - mitigation for NAT Slipstream 2.0 attack
  * Support WebSockets over HTTP/2
  * Support 103 Early Hints for Navigation
  * CVE-2021-30521: Heap buffer overflow in Autofill
  * CVE-2021-30522: Use after free in WebAudio
  * CVE-2021-30523: Use after free in WebRTC
  * CVE-2021-30524: Use after free in TabStrip
  * CVE-2021-30525: Use after free in TabGroups
  * CVE-2021-30526: Out of bounds write in TabStrip
  * CVE-2021-30527: Use after free in WebUI
  * CVE-2021-30528: Use after free in WebAuthentication
  * CVE-2021-30529: Use after free in Bookmarks
  * CVE-2021-30530: Out of bounds memory access in WebAudio
  * CVE-2021-30531: Insufficient policy enforcement in Content Security Policy
  * CVE-2021-30532: Insufficient policy enforcement in Content Security Policy
  * CVE-2021-30533: Insufficient policy enforcement in PopupBlocker
  * CVE-2021-30534: Insufficient policy enforcement in iFrameSandbox
  * CVE-2021-30535: Double free in ICU
  * CVE-2021-21212: Insufficient data validation in networking
  * CVE-2021-30536: Out of bounds read in V8
  * CVE-2021-30537: Insufficient policy enforcement in cookies
  * CVE-2021-30538: Insufficient policy enforcement in content security policy
  * CVE-2021-30539: Insufficient policy enforcement in content security policy
  * CVE-2021-30540: Incorrect security UI in payments
  * Various fixes from internal audits, fuzzing and other initiatives
  * drop chromium-90-TokenizedOutput-include.patch
  * drop chromium-90-CrossThreadCopier-qualification.patch
  * drop chromium-90-quantization_utils-include.patch
  * drop chromium-90-angle-constexpr.patch
  * add chromium-91-java-only-allowed-in-android-builds.patch
  * add chromium-91-GCC_fix_vector_types_in_pcscan.patch
  * add chromium-91-system-icu.patch
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 893793 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 292)
- use asimdrdm CPU flag for aarch64 to select only more powerful buildhosts.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 891089 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 290)
  * Patch change *
- Fix build with GCC 11 again (bsc#1185716)
- Remove chromium-88-compiler.patch
- Remove chromium-90-cstdint.patch
- Remove chromium-90-gslang-linkage-fixup.patch
- Added  chromium-90-compiler.patch
- Added  chromium-90-angle-constexpr.patch
- Added  chromium-90-TokenizedOutput-include.patch
- Added  chromium-90-ruy-include.patch
- Added  chromium-90-CrossThreadCopier-qualification.patch
- Added  chromium-90-quantization_utils-include.patch
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 889077 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 289)
- Chromium 90.0.4430.93 (boo#1185398):
  - CVE-2021-21227: Insufficient data validation in V8. 
  - CVE-2021-21232: Use after free in Dev Tools. 
  - CVE-2021-21233: Heap buffer overflow in ANGLE.
  - CVE-2021-21228: Insufficient policy enforcement in extensions.
  - CVE-2021-21229: Incorrect security UI in downloads.
  - CVE-2021-21230: Type Confusion in V8. 
  - CVE-2021-21231: Insufficient data validation in V8.
  - Reference: https://chromereleases.googleblog.com/2021/04/stable-channel-update-for-desktop_26.html
- Chromium 90.0.4430.85 (boo#1185047):
  * CVE-2021-21222: Heap buffer overflow in V8
  * CVE-2021-21223: Integer overflow in Mojo
  * CVE-2021-21224: Type Confusion in V8
  * CVE-2021-21225: Out of bounds memory access in V8
  * CVE-2021-21226: Use after free in navigation
- Chromium 90.0.4430.72 (boo#1184764):
  * CVE-2021-21201: Use after free in permissions
  * CVE-2021-21202: Use after free in extensions
  * CVE-2021-21203: Use after free in Blink
  * CVE-2021-21204: Use after free in Blink
  * CVE-2021-21205: Insufficient policy enforcement in navigation
  * CVE-2021-21221: Insufficient validation of untrusted input in Mojo
  * CVE-2021-21207: Use after free in IndexedDB
  * CVE-2021-21208: Insufficient data validation in QR scanner
  * CVE-2021-21209: Inappropriate implementation in storage
  * CVE-2021-21210: Inappropriate implementation in Network
  * CVE-2021-21211: Inappropriate implementation in Navigatio 
  * CVE-2021-21212: Incorrect security UI in Network Config UI
  * CVE-2021-21213: Use after free in WebMIDI
  * CVE-2021-21214: Use after free in Network API
  * CVE-2021-21215: Inappropriate implementation in Autofill
  * CVE-2021-21216: Inappropriate implementation in Autofill
  * CVE-2021-21217: Uninitialized Use in PDFium
  * CVE-2021-21218: Uninitialized Use in PDFium
  * CVE-2021-21219: Uninitialized Use in PDFiu
  * drop chromium-89-quiche-private.patch
  * drop chromium-89-quiche-dcheck.patch
  * drop chromium-89-skia-CropRect.patch
  * drop chromium-89-dawn-include.patch
  * drop chromium-89-webcodecs-deps.patch
  * drop chromium-89-AXTreeSerializer-include.patch
  * drop libva-2.11.patch
  * drop libva-2.11-nolegacy.patch
  * drop chromium-84-blink-disable-clang-format.patch
- chromium-90-gslang-linkage-fixup.patch: fixed a weird static/nonpic error
- chromium-90-cstdint.patch: some cstd includes added
- chromium-90-fseal.patch: F_SEAL defines added
Richard Brown's avatar Richard Brown (RBrownSUSE) accepted request 879173 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 286)
- Update to 89.0.4389.90 bsc#1183515
  - CVE-2021-21191: Use after free in WebRTC.
  - CVE-2021-21192: Heap buffer overflow in tab groups.
  - CVE-2021-21193: Use after free in Blink.

- Update to 89.0.4389.82
- Add x11-ozone-fix-two-edge-cases.patch to fix tab drag errors
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 877004 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 285)
- Update to 89.0.4389.72 bsc#1182960
  - CVE-2021-21159: Heap buffer overflow in TabStrip.
  - CVE-2021-21160: Heap buffer overflow in WebAudio.
  - CVE-2021-21161: Heap buffer overflow in TabStrip.
  - CVE-2021-21162: Use after free in WebRTC.
  - CVE-2021-21163: Insufficient data validation in Reader Mode.
  - CVE-2021-21164: Insufficient data validation in Chrome for iOS.
  - CVE-2021-21165: Object lifecycle issue in audio.
  - CVE-2021-21166: Object lifecycle issue in audio.
  - CVE-2021-21167: Use after free in bookmarks.
  - CVE-2021-21168: Insufficient policy enforcement in appcache.
  - CVE-2021-21169: Out of bounds memory access in V8.
  - CVE-2021-21170: Incorrect security UI in Loader.
  - CVE-2021-21171: Incorrect security UI in TabStrip and Navigation.
  - CVE-2021-21172: Insufficient policy enforcement in File System API.
  - CVE-2021-21173: Side-channel information leakage in Network Internals.
  - CVE-2021-21174: Inappropriate implementation in Referrer.
  - CVE-2021-21175: Inappropriate implementation in Site isolation.
  - CVE-2021-21176: Inappropriate implementation in full screen mode.
  - CVE-2021-21177: Insufficient policy enforcement in Autofill.
  - CVE-2021-21178: Inappropriate implementation in Compositing.
  - CVE-2021-21179: Use after free in Network Internals.
  - CVE-2021-21180: Use after free in tab search.
  - CVE-2020-27844: Heap buffer overflow in OpenJPEG.
  - CVE-2021-21181: Side-channel information leakage in autofill.
  - CVE-2021-21182: Insufficient policy enforcement in navigations.
  - CVE-2021-21183: Inappropriate implementation in performance APIs.
  - CVE-2021-21184: Inappropriate implementation in performance APIs.
  - CVE-2021-21185: Insufficient policy enforcement in extensions.
  - CVE-2021-21186: Insufficient policy enforcement in QR scanning.
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 873109 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 284)
bsc#1182358 (forwarded request 873107 from gmbr3)
Dominique Leuenberger's avatar Dominique Leuenberger (dimstar_suse) accepted request 872345 from Callum Farmer's avatar Callum Farmer (gmbr3) (revision 283)
- Add chromium-glibc-2.33.patch: fix Sandbox with glibc 2.33
  (bsc#1182233)
Displaying revisions 121 - 140 of 422
openSUSE Build Service is sponsored by