OPENSUSE-SU-2016:1868-1
Vulnerability Summary
Timeline
Description
Security update for Chromium Chromium was updated to 52.0.2743.82 to fix the following security issues (boo#989901): - CVE-2016-1706: Sandbox escape in PPAPI - CVE-2016-1707: URL spoofing on iOS - CVE-2016-1708: Use-after-free in Extensions - CVE-2016-1709: Heap-buffer-overflow in sfntly - CVE-2016-1710: Same-origin bypass in Blink - CVE-2016-1711: Same-origin bypass in Blink - CVE-2016-5127: Use-after-free in Blink - CVE-2016-5128: Same-origin bypass in V8 - CVE-2016-5129: Memory corruption in V8 - CVE-2016-5130: URL spoofing - CVE-2016-5131: Use-after-free in libxml - CVE-2016-5132: Limited same-origin bypass in Service Workers - CVE-2016-5133: Origin confusion in proxy authentication - CVE-2016-5134: URL leakage via PAC script - CVE-2016-5135: Content-Security-Policy bypass - CVE-2016-5136: Use after free in extensions - CVE-2016-5137: History sniffing with HSTS and CSP - CVE-2016-1705: Various fixes from internal audits, fuzzing and other initiatives
Affected Systems
- suse•chromium&distro=SUSE Package Hub 12
< 52.0.2743.82-89.1
References (20)
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/EFOAQPOUMGPNDVB5ZWHMMBG27GEBJHC6/#EFOAQPOUMGPNDVB5ZWHMMBG27GEBJHC6
- https://bugzilla.suse.com/989901
- https://www.suse.com/security/cve/CVE-2016-1705
- https://www.suse.com/security/cve/CVE-2016-1706
- https://www.suse.com/security/cve/CVE-2016-1707
- https://www.suse.com/security/cve/CVE-2016-1708
- https://www.suse.com/security/cve/CVE-2016-1709
- https://www.suse.com/security/cve/CVE-2016-1710
- https://www.suse.com/security/cve/CVE-2016-1711
- https://www.suse.com/security/cve/CVE-2016-5127
- https://www.suse.com/security/cve/CVE-2016-5128
- https://www.suse.com/security/cve/CVE-2016-5129
- https://www.suse.com/security/cve/CVE-2016-5130
- https://www.suse.com/security/cve/CVE-2016-5131
- https://www.suse.com/security/cve/CVE-2016-5132
- https://www.suse.com/security/cve/CVE-2016-5133
- https://www.suse.com/security/cve/CVE-2016-5134
- https://www.suse.com/security/cve/CVE-2016-5135
- https://www.suse.com/security/cve/CVE-2016-5136
- https://www.suse.com/security/cve/CVE-2016-5137