OPENSUSE-SU-2019:1325-1
Vulnerability Summary
Timeline
Description
Security update for chromium This update for chromium fixes the following issues: Chromium was updated to 74.0.3729.108 boo#1133313: * CVE-2019-5805: Use after free in PDFium * CVE-2019-5806: Integer overflow in Angle * CVE-2019-5807: Memory corruption in V8 * CVE-2019-5808: Use after free in Blink * CVE-2019-5809: Use after free in Blink * CVE-2019-5810: User information disclosure in Autofill * CVE-2019-5811: CORS bypass in Blink * CVE-2019-5813: Out of bounds read in V8 * CVE-2019-5814: CORS bypass in Blink * CVE-2019-5815: Heap buffer overflow in Blink * CVE-2019-5818: Uninitialized value in media reader * CVE-2019-5819: Incorrect escaping in developer tools * CVE-2019-5820: Integer overflow in PDFium * CVE-2019-5821: Integer overflow in PDFium * CVE-2019-5822: CORS bypass in download manager * CVE-2019-5823: Forced navigation from service worker * CVE-2019-5812: URL spoof in Omnibox on iOS * CVE-2019-5816: Exploit persistence extension on Android * CVE-2019-5817: Heap buffer overflow in Angle on Windows - Update conditions to use system harfbuzz on TW+ - Require java during build - Enable using pipewire when available
Affected Systems
- opensuse•chromium&distro=openSUSE Leap 15.0
< 74.0.3729.108-lp150.209.2
References (21)
- https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/CVP5K2G7RMPCMX74GSLOES6UIDRPXW4W/#CVP5K2G7RMPCMX74GSLOES6UIDRPXW4W
- https://bugzilla.suse.com/1133313
- https://www.suse.com/security/cve/CVE-2019-5805
- https://www.suse.com/security/cve/CVE-2019-5806
- https://www.suse.com/security/cve/CVE-2019-5807
- https://www.suse.com/security/cve/CVE-2019-5808
- https://www.suse.com/security/cve/CVE-2019-5809
- https://www.suse.com/security/cve/CVE-2019-5810
- https://www.suse.com/security/cve/CVE-2019-5811
- https://www.suse.com/security/cve/CVE-2019-5812
- https://www.suse.com/security/cve/CVE-2019-5813
- https://www.suse.com/security/cve/CVE-2019-5814
- https://www.suse.com/security/cve/CVE-2019-5815
- https://www.suse.com/security/cve/CVE-2019-5816
- https://www.suse.com/security/cve/CVE-2019-5817
- https://www.suse.com/security/cve/CVE-2019-5818
- https://www.suse.com/security/cve/CVE-2019-5819
- https://www.suse.com/security/cve/CVE-2019-5820
- https://www.suse.com/security/cve/CVE-2019-5821
- https://www.suse.com/security/cve/CVE-2019-5822
- https://www.suse.com/security/cve/CVE-2019-5823