Commit Graph

2440 Commits

Author SHA256 Message Date
Tomáš Chvátal
bf5400fcf6 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1248 2019-04-30 09:46:18 +00:00
Tomáš Chvátal
d6f3333b96 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1247 2019-04-30 09:36:17 +00:00
Tomáš Chvátal
6e54fa2d93 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1247 2019-04-30 09:36:17 +00:00
Tomáš Chvátal
6a9848be83 - Update to 74.0.3729.108 bsc#1133313:
* CVE-2019-5805: Use after free in PDFium
  * CVE-2019-5806: Integer overflow in Angle
  * CVE-2019-5807: Memory corruption in V8
  * CVE-2019-5808: Use after free in Blink
  * CVE-2019-5809: Use after free in Blink
  * CVE-2019-5810: User information disclosure in Autofill
  * CVE-2019-5811: CORS bypass in Blink
  * CVE-2019-5813: Out of bounds read in V8
  * CVE-2019-5814: CORS bypass in Blink
  * CVE-2019-5815: Heap buffer overflow in Blink
  * CVE-2019-5818: Uninitialized value in media reader
  * CVE-2019-5819: Incorrect escaping in developer tools
  * CVE-2019-5820: Integer overflow in PDFium
  * CVE-2019-5821: Integer overflow in PDFium
  * CVE-2019-5822: CORS bypass in download manager
  * CVE-2019-5823: Forced navigation from service worker
  * CVE-2019-5812: URL spoof in Omnibox on iOS
  * CVE-2019-5816: Exploit persistence extension on Android
  * CVE-2019-5817: Heap buffer overflow in Angle on Windows
- Add patches:
  * 00-basevalue.patch
  * 01-basevalue.patch
  * 02-basevalue.patch
  * 03-basevalue.patch
  * 04-basevalue.patch
  * 05-basevalue.patch
  * 06-basevalue.patch
  * old-libva.patch
  * quic.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1246
2019-04-30 09:18:57 +00:00
Tomáš Chvátal
40765c3c18 - Update to 74.0.3729.108 bsc#1133313:
* CVE-2019-5805: Use after free in PDFium
  * CVE-2019-5806: Integer overflow in Angle
  * CVE-2019-5807: Memory corruption in V8
  * CVE-2019-5808: Use after free in Blink
  * CVE-2019-5809: Use after free in Blink
  * CVE-2019-5810: User information disclosure in Autofill
  * CVE-2019-5811: CORS bypass in Blink
  * CVE-2019-5813: Out of bounds read in V8
  * CVE-2019-5814: CORS bypass in Blink
  * CVE-2019-5815: Heap buffer overflow in Blink
  * CVE-2019-5818: Uninitialized value in media reader
  * CVE-2019-5819: Incorrect escaping in developer tools
  * CVE-2019-5820: Integer overflow in PDFium
  * CVE-2019-5821: Integer overflow in PDFium
  * CVE-2019-5822: CORS bypass in download manager
  * CVE-2019-5823: Forced navigation from service worker
  * CVE-2019-5812: URL spoof in Omnibox on iOS
  * CVE-2019-5816: Exploit persistence extension on Android
  * CVE-2019-5817: Heap buffer overflow in Angle on Windows
- Add patches:
  * 00-basevalue.patch
  * 01-basevalue.patch
  * 02-basevalue.patch
  * 03-basevalue.patch
  * 04-basevalue.patch
  * 05-basevalue.patch
  * 06-basevalue.patch
  * old-libva.patch
  * quic.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1246
2019-04-30 09:18:57 +00:00
Tomáš Chvátal
f31fb6de7c Accepting request 699572 from network:chromium
- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Update %arm build, but keep it disabled for now, as ld requires 
  lots of RAM
- Up to 72.0.3626.14
- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Increase %limit_build value to avoid OOM
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0

- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17

OBS-URL: https://build.opensuse.org/request/show/699572
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1245
2019-04-30 09:13:16 +00:00
Tomáš Chvátal
3552bea381 Accepting request 699572 from network:chromium
- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Update %arm build, but keep it disabled for now, as ld requires 
  lots of RAM
- Up to 72.0.3626.14
- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Increase %limit_build value to avoid OOM
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0

- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17

OBS-URL: https://build.opensuse.org/request/show/699572
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1245
2019-04-30 09:13:16 +00:00
Tomáš Chvátal
3f1d63d68f - Update to 73.0.3686.103:
* Various feature fixes

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1243
2019-04-05 08:50:43 +00:00
Tomáš Chvátal
b8b3ce4f27 - Update to 73.0.3686.103:
* Various feature fixes

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1243
2019-04-05 08:50:43 +00:00
Tomáš Chvátal
f1f4ece36e OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1241 2019-03-26 09:00:31 +00:00
Tomáš Chvátal
65c25d5fe9 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1241 2019-03-26 09:00:31 +00:00
Tomáš Chvátal
f2ef031d29 - Refresh patch:
* chromium-non-void-return.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1240
2019-03-25 14:03:53 +00:00
Tomáš Chvátal
7678f60799 - Refresh patch:
* chromium-non-void-return.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1240
2019-03-25 14:03:53 +00:00
Tomáš Chvátal
7f225e2f66 - Add patch for pipewire build:
* chromium-73.0.3683.75-pipewire-cstring-fix.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1239
2019-03-25 13:50:14 +00:00
Tomáš Chvátal
49ab3e252d - Add patch for pipewire build:
* chromium-73.0.3683.75-pipewire-cstring-fix.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1239
2019-03-25 13:50:14 +00:00
Tomáš Chvátal
0b42826119 - Update to 73.0.3683.86:
* Just feature fixes around

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1238
2019-03-25 10:54:48 +00:00
Tomáš Chvátal
8ff6604a49 - Update to 73.0.3683.86:
* Just feature fixes around

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1238
2019-03-25 10:54:48 +00:00
Tomáš Chvátal
637cc64e4d - Rebase chromium-vaapi.patch to match up the Fedora one
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1237
2019-03-22 11:06:57 +00:00
Tomáš Chvátal
4a4bc84d18 - Rebase chromium-vaapi.patch to match up the Fedora one
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1237
2019-03-22 11:06:57 +00:00
Tomáš Chvátal
59a111c08c - Update conditions to use system harfbuzz on TW+
- Require java during build
- Enable using pipewire when available

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1236
2019-03-21 11:04:27 +00:00
Tomáš Chvátal
53f34ecb75 - Update conditions to use system harfbuzz on TW+
- Require java during build
- Enable using pipewire when available

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1236
2019-03-21 11:04:27 +00:00
Tomáš Chvátal
5bfc6cff0b OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1235 2019-03-18 13:09:30 +00:00
Tomáš Chvátal
2435513a2f OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1235 2019-03-18 13:09:30 +00:00
Tomáš Chvátal
5dce4bf600 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1233 2019-03-13 16:23:42 +00:00
Tomáš Chvátal
45345189cc OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1233 2019-03-13 16:23:42 +00:00
Tomáš Chvátal
fdcfe7d6aa - Update to 73.0.3683.75 bsc#1129059:
* CVE-2019-5787: Use after free in Canvas.
  * CVE-2019-5788: Use after free in FileAPI.
  * CVE-2019-5789: Use after free in WebMIDI.
  * CVE-2019-5790: Heap buffer overflow in V8.
  * CVE-2019-5791: Type confusion in V8.
  * CVE-2019-5792: Integer overflow in PDFium.
  * CVE-2019-5793: Excessive permissions for private API in Extensions.
  * CVE-2019-5794: Security UI spoofing.
  * CVE-2019-5795: Integer overflow in PDFium.
  * CVE-2019-5796: Race condition in Extensions.
  * CVE-2019-5797: Race condition in DOMStorage.
  * CVE-2019-5798: Out of bounds read in Skia.
  * CVE-2019-5799: CSP bypass with blob URL.
  * CVE-2019-5800: CSP bypass with blob URL.
  * CVE-2019-5801: Incorrect Omnibox display on iOS.
  * CVE-2019-5802: Security UI spoofing.
  * CVE-2019-5803: CSP bypass with Javascript URLs'.
  * CVE-2019-5804: Command line command injection on Windows.
- Update patches:
  * chromium-buildname.patch
  * chromium-non-void-return.patch
  * chromium-old-glibc.patch
  * chromium-old-libva.patch
  * chromium-vaapi.patch
- Removed patches:
  * chromium-crashpad-fix_aarch64.patch
  * chromium-webrtc-includes.patch
- Added patches:
  * chromium-gcc.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1232
2019-03-13 10:30:46 +00:00
Tomáš Chvátal
edcc3f216a - Update to 73.0.3683.75 bsc#1129059:
* CVE-2019-5787: Use after free in Canvas.
  * CVE-2019-5788: Use after free in FileAPI.
  * CVE-2019-5789: Use after free in WebMIDI.
  * CVE-2019-5790: Heap buffer overflow in V8.
  * CVE-2019-5791: Type confusion in V8.
  * CVE-2019-5792: Integer overflow in PDFium.
  * CVE-2019-5793: Excessive permissions for private API in Extensions.
  * CVE-2019-5794: Security UI spoofing.
  * CVE-2019-5795: Integer overflow in PDFium.
  * CVE-2019-5796: Race condition in Extensions.
  * CVE-2019-5797: Race condition in DOMStorage.
  * CVE-2019-5798: Out of bounds read in Skia.
  * CVE-2019-5799: CSP bypass with blob URL.
  * CVE-2019-5800: CSP bypass with blob URL.
  * CVE-2019-5801: Incorrect Omnibox display on iOS.
  * CVE-2019-5802: Security UI spoofing.
  * CVE-2019-5803: CSP bypass with Javascript URLs'.
  * CVE-2019-5804: Command line command injection on Windows.
- Update patches:
  * chromium-buildname.patch
  * chromium-non-void-return.patch
  * chromium-old-glibc.patch
  * chromium-old-libva.patch
  * chromium-vaapi.patch
- Removed patches:
  * chromium-crashpad-fix_aarch64.patch
  * chromium-webrtc-includes.patch
- Added patches:
  * chromium-gcc.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1232
2019-03-13 10:30:46 +00:00
Tomáš Chvátal
cf454cc535 Accepting request 684653 from network:chromium
- Add patch to fix crashpad build on aarch64:
  * chromium-fix_crashpad.patch
- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Update %arm build, but keep it disabled for now, as ld requires 
  lots of RAM
- Up to 72.0.3626.14
- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Increase %limit_build value to avoid OOM
- Rework aarch64 build requirements

- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3

OBS-URL: https://build.opensuse.org/request/show/684653
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1231
2019-03-13 10:16:54 +00:00
Tomáš Chvátal
ac4523dd6c Accepting request 684653 from network:chromium
- Add patch to fix crashpad build on aarch64:
  * chromium-fix_crashpad.patch
- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Update %arm build, but keep it disabled for now, as ld requires 
  lots of RAM
- Up to 72.0.3626.14
- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Increase %limit_build value to avoid OOM
- Rework aarch64 build requirements

- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3

OBS-URL: https://build.opensuse.org/request/show/684653
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1231
2019-03-13 10:16:54 +00:00
Tomáš Chvátal
e62cf32e5a - Drop direct dependency on libgsm, we just need the devel
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1229
2019-03-04 09:32:58 +00:00
Tomáš Chvátal
24ce3c4483 - Drop direct dependency on libgsm, we just need the devel
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1229
2019-03-04 09:32:58 +00:00
Tomáš Chvátal
3cfd55a389 - Update to 72.0.3626.121:
* fixes bsc#1127602 CVE-2019-5786

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1228
2019-03-02 14:55:44 +00:00
Tomáš Chvátal
114aafb998 - Update to 72.0.3626.121:
* fixes bsc#1127602 CVE-2019-5786

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1228
2019-03-02 14:55:44 +00:00
Tomáš Chvátal
c8407d4707 - Update to 72.0.3626.119:
* Feature fixes update only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1226
2019-02-25 10:40:32 +00:00
Tomáš Chvátal
072925ce40 - Update to 72.0.3626.119:
* Feature fixes update only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1226
2019-02-25 10:40:32 +00:00
Tomáš Chvátal
e2a7f9a680 - Update to 72.0.3626.109:
* This is just feature fixes update

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1224
2019-02-20 14:14:02 +00:00
Tomáš Chvátal
6e93bdee45 - Update to 72.0.3626.109:
* This is just feature fixes update

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1224
2019-02-20 14:14:02 +00:00
Tomáš Chvátal
02423f1087 - Update to 72.0.3626.96 bsc#1124936:
* CVE-2019-5784: Inappropriate implementation in V8

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1222
2019-02-11 08:56:29 +00:00
Tomáš Chvátal
7ccb9e3556 - Update to 72.0.3626.96 bsc#1124936:
* CVE-2019-5784: Inappropriate implementation in V8

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1222
2019-02-11 08:56:29 +00:00
Tomáš Chvátal
801b6a6bfa Accepting request 673189 from home:simotek:branches:network:chromium
- Provide web_browser so chromium can be installed instead of firefox.

OBS-URL: https://build.opensuse.org/request/show/673189
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1221
2019-02-11 08:18:05 +00:00
Tomáš Chvátal
bb5e8fd1d9 Accepting request 673189 from home:simotek:branches:network:chromium
- Provide web_browser so chromium can be installed instead of firefox.

OBS-URL: https://build.opensuse.org/request/show/673189
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1221
2019-02-11 08:18:05 +00:00
Tomáš Chvátal
8d9e8a6bc2 OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1219 2019-01-30 09:13:14 +00:00
Tomáš Chvátal
14e11a4c3d OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1219 2019-01-30 09:13:14 +00:00
Tomáš Chvátal
8e0b48d2fb - Update to 72.0.3626.81 bsc#1123641:
* CVE-2019-5754: Inappropriate implementation in QUIC Networking. Reported by Klzgrad on 2018-12-12
  * CVE-2019-5782:  Inappropriate implementation in V8. Reported by Qixun Zhao of Qihoo 360 Vulcan Team via Tianfu Cup on 2018-11-16
  * CVE-2019-5755: Inappropriate implementation in V8. Reported by Jay Bosamiya on 2018-12-10
  * CVE-2019-5756: Use after free in PDFium. Reported by Anonymous on 2018-10-14   
  * CVE-2019-5757: Type Confusion in SVG. Reported by Alexandru Pitis, Microsoft Browser Vulnerability Research on 2018-12-15
  * CVE-2019-5758: Use after free in Blink. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-11
  * CVE-2019-5759: Use after free in HTML select elements. Reported by Almog Benin on 2018-12-05
  * CVE-2019-5760: Use after free in WebRTC. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-05
  * CVE-2019-5761: Use after free in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-13
  * CVE-2019-5762: Use after free in PDFium. Reported by Anonymous on 2018-10-31   
  * CVE-2019-5763: Insufficient validation of untrusted input in V8. Reported by Guang Gong of Alpha Team, Qihoo 360 on 2018-12-13
  * CVE-2019-5764: Use after free in WebRTC. Reported by Eyal Itkin from Check Point Software Technologies on 2018-12-09
  * CVE-2019-5765: Insufficient policy enforcement in the browser. Reported by Sergey Toshin (@bagipro) on 2019-01-16
  * CVE-2019-5766: Insufficient policy enforcement in Canvas. Reported by David Erceg on 2018-11-20
  * CVE-2019-5767: Incorrect security UI in WebAPKs. Reported by Haoran Lu, Yifan Zhang, Luyi Xing, and Xiaojing Liao from Indiana University Bloomington on 2018-11-06
  * CVE-2019-5768: Insufficient policy enforcement in DevTools. Reported by Rob Wu on 2018-01-24
  * CVE-2019-5769: Insufficient validation of untrusted input in Blink. Reported by Guy Eshel on 2018-12-11
  * CVE-2019-5770: Heap buffer overflow in WebGL. Reported by  hemidallt@ on 2018-11-27
  * CVE-2019-5771: Heap buffer overflow in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-12
  * CVE-2019-5772: Use after free in PDFium. Reported by Zhen Zhou of NSFOCUS Security Team on 2018-11-26
  * CVE-2019-5773: Insufficient data validation in IndexedDB. Reported by Yongke Wang of Tencent's Xuanwu Lab (xlab.tencent.com) on 2018-12-24
  * CVE-2019-5774: Insufficient validation of untrusted input in SafeBrowsing. Reported by Junghwan Kang (ultract) and Juno Im on 2018-11-11
  * CVE-2019-5775: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18
  * CVE-2019-5776: Insufficient policy enforcement in Omnibox. Reported by Lnyas Zhang on 2018-07-14
  * CVE-2019-5777: Insufficient policy enforcement in Omnibox. Reported by Khalil Zhani on 2018-06-04
  * CVE-2019-5778: Insufficient policy enforcement in Extensions. Reported by David Erceg on 2019-01-02
  * CVE-2019-5779: Insufficient policy enforcement in ServiceWorker. Reported by David Erceg on 2018-11-11
  * CVE-2019-5780: Insufficient policy enforcement. Reported by Andreas Hegenberg (folivora.AI GmbH) on 2018-10-03
  * CVE-2019-5781: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1218
2019-01-30 09:12:20 +00:00
Tomáš Chvátal
78692c0c15 - Update to 72.0.3626.81 bsc#1123641:
* CVE-2019-5754: Inappropriate implementation in QUIC Networking. Reported by Klzgrad on 2018-12-12
  * CVE-2019-5782:  Inappropriate implementation in V8. Reported by Qixun Zhao of Qihoo 360 Vulcan Team via Tianfu Cup on 2018-11-16
  * CVE-2019-5755: Inappropriate implementation in V8. Reported by Jay Bosamiya on 2018-12-10
  * CVE-2019-5756: Use after free in PDFium. Reported by Anonymous on 2018-10-14   
  * CVE-2019-5757: Type Confusion in SVG. Reported by Alexandru Pitis, Microsoft Browser Vulnerability Research on 2018-12-15
  * CVE-2019-5758: Use after free in Blink. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-11
  * CVE-2019-5759: Use after free in HTML select elements. Reported by Almog Benin on 2018-12-05
  * CVE-2019-5760: Use after free in WebRTC. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-05
  * CVE-2019-5761: Use after free in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-13
  * CVE-2019-5762: Use after free in PDFium. Reported by Anonymous on 2018-10-31   
  * CVE-2019-5763: Insufficient validation of untrusted input in V8. Reported by Guang Gong of Alpha Team, Qihoo 360 on 2018-12-13
  * CVE-2019-5764: Use after free in WebRTC. Reported by Eyal Itkin from Check Point Software Technologies on 2018-12-09
  * CVE-2019-5765: Insufficient policy enforcement in the browser. Reported by Sergey Toshin (@bagipro) on 2019-01-16
  * CVE-2019-5766: Insufficient policy enforcement in Canvas. Reported by David Erceg on 2018-11-20
  * CVE-2019-5767: Incorrect security UI in WebAPKs. Reported by Haoran Lu, Yifan Zhang, Luyi Xing, and Xiaojing Liao from Indiana University Bloomington on 2018-11-06
  * CVE-2019-5768: Insufficient policy enforcement in DevTools. Reported by Rob Wu on 2018-01-24
  * CVE-2019-5769: Insufficient validation of untrusted input in Blink. Reported by Guy Eshel on 2018-12-11
  * CVE-2019-5770: Heap buffer overflow in WebGL. Reported by  hemidallt@ on 2018-11-27
  * CVE-2019-5771: Heap buffer overflow in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-12
  * CVE-2019-5772: Use after free in PDFium. Reported by Zhen Zhou of NSFOCUS Security Team on 2018-11-26
  * CVE-2019-5773: Insufficient data validation in IndexedDB. Reported by Yongke Wang of Tencent's Xuanwu Lab (xlab.tencent.com) on 2018-12-24
  * CVE-2019-5774: Insufficient validation of untrusted input in SafeBrowsing. Reported by Junghwan Kang (ultract) and Juno Im on 2018-11-11
  * CVE-2019-5775: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18
  * CVE-2019-5776: Insufficient policy enforcement in Omnibox. Reported by Lnyas Zhang on 2018-07-14
  * CVE-2019-5777: Insufficient policy enforcement in Omnibox. Reported by Khalil Zhani on 2018-06-04
  * CVE-2019-5778: Insufficient policy enforcement in Extensions. Reported by David Erceg on 2019-01-02
  * CVE-2019-5779: Insufficient policy enforcement in ServiceWorker. Reported by David Erceg on 2018-11-11
  * CVE-2019-5780: Insufficient policy enforcement. Reported by Andreas Hegenberg (folivora.AI GmbH) on 2018-10-03
  * CVE-2019-5781: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1218
2019-01-30 09:12:20 +00:00
Tomáš Chvátal
77c012eac3 Accepting request 670066 from network:chromium
- Add patch to fix aarch64 build:
  * chromium-crashpad-fix_aarch64.patch

- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Up to 72.0.3626.14

- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17
- Up to 68.0.3438.3

OBS-URL: https://build.opensuse.org/request/show/670066
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1217
2019-01-30 08:50:03 +00:00
Tomáš Chvátal
5fa9bed719 Accepting request 670066 from network:chromium
- Add patch to fix aarch64 build:
  * chromium-crashpad-fix_aarch64.patch

- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Up to 72.0.3626.14

- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17
- Up to 68.0.3438.3

OBS-URL: https://build.opensuse.org/request/show/670066
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1217
2019-01-30 08:50:03 +00:00
Tomáš Chvátal
77c3ffeaf8 - Tweak fix_building_widevinecdm_with_chromium.patch to make it
work again bsc#1120429

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1215
2019-01-02 08:31:04 +00:00
Tomáš Chvátal
06f0774a1b - Tweak fix_building_widevinecdm_with_chromium.patch to make it
work again bsc#1120429

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1215
2019-01-02 08:31:04 +00:00
f6743440c0 Accepting request 657998 from home:Guillaume_G:branches:network:chromium
- Update %arm build, but keep it disabled for now, as ld requires lots of RAM

OBS-URL: https://build.opensuse.org/request/show/657998
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1213
2018-12-18 15:06:23 +00:00