- Version update to 62.0.3202.89 bsc#1066851:

* CVE-2017-15398: Stack buffer overflow in QUIC
  * CVE-2017-15399: Use after free in V8
  * CVE-2017-5126: Use after free in PDFium.
  * CVE-2017-5127: Use after free in PDFium.

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1062
This commit is contained in:
Tomáš Chvátal
2017-11-07 10:15:26 +00:00
committed by Git OBS Bridge
parent c7736042bc
commit 6aa8cfb260
4 changed files with 13 additions and 6 deletions

View File

@@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:49cdfe457bcb941b56c13a75bbe2ff394fcb5baa8a49c9b470835fad60dd904c
size 517136048

View File

@@ -0,0 +1,3 @@
version https://git-lfs.github.com/spec/v1
oid sha256:9f79760dc22f7183602a07af3d37d2226bd63ab0ca7163d88ac0d81982de9469
size 517100784

View File

@@ -1,3 +1,10 @@
-------------------------------------------------------------------
Tue Nov 7 10:12:28 UTC 2017 - tchvatal@suse.com
- Version update to 62.0.3202.89 bsc#1066851:
* CVE-2017-15398: Stack buffer overflow in QUIC
* CVE-2017-15399: Use after free in V8
-------------------------------------------------------------------
Fri Nov 3 12:40:33 UTC 2017 - tchvatal@suse.com
@@ -37,8 +44,8 @@ Thu Oct 19 03:29:56 UTC 2017 - tchvatal@suse.com
- Update to 62.0.3202.62 bsc#1064066:
* CVE-2017-5124: UXSS with MHTML.
* CVE-2017-5125: Heap overflow in Skia.
* CVE-2017-5126: Use after free in PDFium.
* CVE-2017-5127: Use after free in PDFium.
* CVE-2017-5126: Use after free in PDFium.
* CVE-2017-5127: Use after free in PDFium.
* CVE-2017-5128: Heap overflow in WebGL.
* CVE-2017-5129: Use after free in WebAudio.
* CVE-2017-5132: Incorrect stack manipulation in WebAssembly.

View File

@@ -39,7 +39,7 @@
%bcond_with system_vpx
%bcond_with clang
Name: chromium
Version: 62.0.3202.75
Version: 62.0.3202.89
Release: 0
Summary: Google's open source browser project
License: BSD-3-Clause AND LGPL-2.1+