Security update for chromium
This update for chromium fixes the following issues: - Update to 86.0.4240.183 boo#1178375 - CVE-2020-16004: Use after free in user interface. - CVE-2020-16005: Insufficient policy enforcement in ANGLE. - CVE-2020-16006: Inappropriate implementation in V8 - CVE-2020-16007: Insufficient data validation in installer. - CVE-2020-16008: Stack buffer overflow in WebRTC. - CVE-2020-16009: Inappropriate implementation in V8. - CVE-2020-16011: Heap buffer overflow in UI on Windows. This update was imported from the openSUSE:Leap:15.1:Update update project.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for chromium fixes the following issues: - Update to 86.0.4240.183 boo#1178375 - CVE-2020-16004: Use after free in user interface. - CVE-2020-16005: Insufficient policy enforcement in ANGLE. - CVE-2020-16006: Inappropriate implementation in V8 - CVE-2020-16007: Insufficient data validation in installer. - CVE-2020-16008: Stack buffer overflow in WebRTC. - CVE-2020-16009: Inappropriate implementation in V8. - CVE-2020-16011: Heap buffer overflow in UI on Windows. This update was imported from the openSUSE:Leap:15.1:Update update project.
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1178375
- https://lists.opensuse.org/archives/list/[email protected]/thread/ABZ54FWLCGQJEV7RPVRMYY7B5D4OPJ4P/
- https://www.suse.com/security/cve/CVE-2020-16004
- https://www.suse.com/security/cve/CVE-2020-16005
- https://www.suse.com/security/cve/CVE-2020-16006
- https://www.suse.com/security/cve/CVE-2020-16007
- https://www.suse.com/security/cve/CVE-2020-16008
- https://www.suse.com/security/cve/CVE-2020-16009
- https://www.suse.com/security/cve/CVE-2020-16011