Raymond Wooninck
2015-07-21 19:09:08 +00:00
committed by Git OBS Bridge
parent 374520bb98
commit f23097c101
4 changed files with 35 additions and 4 deletions

View File

@@ -1,3 +0,0 @@
version https://git-lfs.github.com/spec/v1
oid sha256:d3a1bbe3e1445dfcf5ef4aff4b11a8f3770436c8b8954b7cc5fee5416f117659
size 290976408

BIN
chromium-44.0.2403.89.tar.xz (Stored with Git LFS) Normal file

Binary file not shown.

View File

@@ -1,3 +1,34 @@
-------------------------------------------------------------------
Tue Jul 21 18:56:57 UTC 2015 - tittiatcoke@gmail.com
- Update to Chromium 44.0.2403.89
* A number of new apps/extension APIs
* Lots of under the hood changes for stability and performance
* Security fixes:
- CVE-2015-1271: Heap-buffer-overflow in pdfium
- CVE-2015-1273: Heap-buffer-overflow in pdfium
- CVE-2015-1274: Settings allowed executable files to run
immediately after download
- CVE-2015-1275: UXSS in Chrome for Android
- CVE-2015-1276: Use-after-free in IndexedDB
- CVE-2015-1279: Heap-buffer-overflow in pdfium
- CVE-2015-1280: Memory corruption in skia
- CVE-2015-1281: CSP bypass
- CVE-2015-1282: Use-after-free in pdfium
- CVE-2015-1283: Heap-buffer-overflow in expat
- CVE-2015-1284: Use-after-free in blink
- CVE-2015-1286: UXSS in blink
- CVE-2015-1287: SOP bypass with CSS
- CVE-2015-1270: Uninitialized memory read in ICU
- CVE-2015-1272: Use-after-free related to unexpected GPU
process termination
- CVE-2015-1277: Use-after-free in accessibility
- CVE-2015-1278: URL spoofing using pdf files
- CVE-2015-1285: Information leak in XSS auditor
- CVE-2015-1288: Spell checking dictionaries fetched over HTTP
- CVE-2015-1289: Various fixes from internal audits, fuzzing
and other initiatives
-------------------------------------------------------------------
Wed Jul 15 12:01:42 UTC 2015 - tittiatcoke@gmail.com

View File

@@ -20,7 +20,7 @@
%define chromium_system_libs 0
Name: chromium
Version: 43.0.2357.134
Version: 44.0.2403.89
Release: 0
Summary: Google's opens source browser project
License: BSD-3-Clause and LGPL-2.1+