Oval Definition:oval:org.opensuse.security:def:423
Revision Date:2022-08-12Version:1
Title:Security update for chromium (Important)
Description:

This update for chromium fixes the following issues:

Chromium 104.0.5112.79 (boo#1202075)

CVE-2022-2603: Use after free in Omnibox * CVE-2022-2604: Use after free in Safe Browsing * CVE-2022-2605: Out of bounds read in Dawn * CVE-2022-2606: Use after free in Managed devices API * CVE-2022-2607: Use after free in Tab Strip * CVE-2022-2608: Use after free in Overview Mode * CVE-2022-2609: Use after free in Nearby Share * CVE-2022-2610: Insufficient policy enforcement in Background Fetch * CVE-2022-2611: Inappropriate implementation in Fullscreen API * CVE-2022-2612: Side-channel information leakage in Keyboard input * CVE-2022-2613: Use after free in Input * CVE-2022-2614: Use after free in Sign-In Flow * CVE-2022-2615: Insufficient policy enforcement in Cookies * CVE-2022-2616: Inappropriate implementation in Extensions API * CVE-2022-2617: Use after free in Extensions API * CVE-2022-2618: Insufficient validation of untrusted input in Internals * CVE-2022-2619: Insufficient validation of untrusted input in Settings * CVE-2022-2620: Use after free in WebUI * CVE-2022-2621: Use after free in Extensions * CVE-2022-2622: Insufficient validation of untrusted input in Safe Browsing * CVE-2022-2623: Use after free in Offline * CVE-2022-2624: Heap buffer overflow in PDF

- Switch back to Clang so that we can use BTI on aarch64 * Gold is too old - doesn't understand BTI * LD crashes on aarch64 - Re-enable LTO - Prepare move to FFmpeg 5 for new channel layout (requires 5.1+)
Family:unixClass:patch
Status:Reference(s):1202075
CVE-2013-1992
CVE-2013-1992
CVE-2022-2603
CVE-2022-2604
CVE-2022-2605
CVE-2022-2606
CVE-2022-2607
CVE-2022-2608
CVE-2022-2609
CVE-2022-2610
CVE-2022-2611
CVE-2022-2612
CVE-2022-2613
CVE-2022-2614
CVE-2022-2615
CVE-2022-2616
CVE-2022-2617
CVE-2022-2618
CVE-2022-2619
CVE-2022-2620
CVE-2022-2621
CVE-2022-2622
CVE-2022-2623
CVE-2022-2624
openSUSE-SU-2022:10086-1
Platform(s):openSUSE 12.3 Update
openSUSE 13.1
openSUSE Leap 15.4
SUSE Linux Enterprise Desktop 12 SP1
SUSE Linux Enterprise Desktop 15 SP1
SUSE Linux Enterprise for SAP 12
SUSE Linux Enterprise High Availability 12 SP1
SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Live Patching 12
SUSE Linux Enterprise Module for Basesystem 15 SP1
SUSE Linux Enterprise Module for Containers 12
SUSE Linux Enterprise Module for Development Tools 15
SUSE Linux Enterprise Module for Legacy Software 12
SUSE Linux Enterprise Module for Public Cloud 12
SUSE Linux Enterprise Module for Web Scripting 12
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Software Development Kit 12
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • openSUSE Leap 15.4 is installed
  • AND Package Information
  • chromedriver-104.0.5112.79-bp154.2.20.1 is installed
  • OR chromium-104.0.5112.79-bp154.2.20.1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Desktop 12 SP1 is installed
  • AND libyaml-0-2-0.1.6-7 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libdmx-devel-1.1.3-1.23 is installed
  • OR libdmx1-1.1.3-1.23 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Basesystem 15 SP1 is installed
  • AND Package Information
  • libdmx-devel-1.1.3-1 is installed
  • OR libdmx1-1.1.3-1 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Module for Development Tools 15 is installed
  • AND Package Information
  • libpcp-devel-3.11.9-3 is installed
  • OR libpcp3-3.11.9-3 is installed
  • OR libpcp_gui2-3.11.9-3 is installed
  • OR libpcp_import1-3.11.9-3 is installed
  • OR libpcp_mmv1-3.11.9-3 is installed
  • OR libpcp_trace2-3.11.9-3 is installed
  • OR libpcp_web1-3.11.9-3 is installed
  • OR pcp-3.11.9-3 is installed
  • OR pcp-conf-3.11.9-3 is installed
  • OR pcp-devel-3.11.9-3 is installed
  • OR pcp-doc-3.11.9-3 is installed
  • OR pcp-import-iostat2pcp-3.11.9-3 is installed
  • OR pcp-import-mrtg2pcp-3.11.9-3 is installed
  • OR pcp-import-sar2pcp-3.11.9-3 is installed
  • OR perl-PCP-LogImport-3.11.9-3 is installed
  • OR perl-PCP-LogSummary-3.11.9-3 is installed
  • OR perl-PCP-MMV-3.11.9-3 is installed
  • OR perl-PCP-PMDA-3.11.9-3 is installed
  • OR python-pcp-3.11.9-3 is installed
  • BACK