Oval Definition:oval:org.opensuse.security:def:413
Revision Date:2022-07-10Version:1
Title:Security update for libqt5-qtwebengine (Moderate)
Description:

This update for libqt5-qtwebengine fixes the following issues:

Update to version 5.15.10:

Fix top level build with no widget * Fix read-after-free on EGL extensions * Update Chromium * Add workaround for unstable gn on macOS in ci * Pass archiver to gn build * Fix navigation to non-local URLs * Add support for universal builds for qtwebengine and qtpdf * Enable Apple Silicon support * Fix cross compilation x86_64->arm64 on mac * Bump version to 5.15.10 * CustomDialogs: Make custom input fields readable in dark mode * CookieBrowser: Make alternating rows readable in dark mode

Update Chromium: * Bump V8_PATCH_LEVEL * Fix clang set-but-unused-variable warning * Fix mac toolchain python linker script call * Fix missing dependency for gpu sources * Fix python calls * Fix undefined symbol for universal link * Quick fix for regression in service workers by reverting backports * [Backport] CVE-2022-0797: Out of bounds memory access in Mojo * [Backport] CVE-2022-1125 * [Backport] CVE-2022-1138: Inappropriate implementation in Web Cursor. * [Backport] CVE-2022-1305: Use after free in storage * [Backport] CVE-2022-1310: Use after free in regular expressions * [Backport] CVE-2022-1314: Type Confusion in V8 * [Backport] CVE-2022-1493: Use after free in Dev Tools * [Backport] On arm64 hosts, set host_cpu to 'arm64', not 'arm' * [Backport] Security Bug 1296876 * [Backport] Security bug 1269999 * [Backport] Security bug 1280852 * [Backport] Security bug 1292905 * [Backport] Security bug 1304659 * [Backport] Security bug 1306507

Family:unixClass:patch
Status:Reference(s):CVE-2014-8240
CVE-2014-8240
CVE-2015-0255
CVE-2015-0255
CVE-2022-0797
CVE-2022-1125
CVE-2022-1138
CVE-2022-1305
CVE-2022-1310
CVE-2022-1314
CVE-2022-1493
openSUSE-SU-2022:10049-1
Platform(s):openSUSE 12.3 Update
openSUSE 13.1
openSUSE Leap 15.4
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise High Availability 12
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • openSUSE Leap 15.4 is installed
  • AND Package Information
  • libQt5Pdf5-5.15.10-bp154.2.3.2 is installed
  • OR libQt5PdfWidgets5-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtpdf-devel-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtpdf-examples-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtpdf-imports-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtpdf-private-headers-devel-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtwebengine-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtwebengine-devel-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtwebengine-examples-5.15.10-bp154.2.3.2 is installed
  • OR libqt5-qtwebengine-private-headers-devel-5.15.10-bp154.2.3.2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND Package Information
  • libtiff5-4.0.4-12 is installed
  • OR libtiff5-32bit-4.0.4-12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libXvnc1-1.9.0-17.32 is installed
  • OR tigervnc-1.9.0-17.32 is installed
  • OR xorg-x11-Xvnc-1.9.0-17.32 is installed
  • OR xorg-x11-Xvnc-module-1.9.0-17.32 is installed
  • OR xorg-x11-Xvnc-novnc-1.9.0-17.32 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libXvnc1-1.9.0-17 is installed
  • OR tigervnc-1.9.0-17 is installed
  • OR xorg-x11-Xvnc-1.9.0-17 is installed
  • OR xorg-x11-Xvnc-module-1.9.0-17 is installed
  • OR xorg-x11-Xvnc-novnc-1.9.0-17 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND ctags-5.8-1 is installed
  • BACK