Commit Graph

921 Commits

Author SHA256 Message Date
Tomáš Chvátal
5d88d60b4d Accepting request 616575 from home:AndreasStieger:branches:network:chromium
Chromium 67.0.3396.87:
  * CVE-2018-6149: Out of bounds write in V8 (boo#1097452)

OBS-URL: https://build.opensuse.org/request/show/616575
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1136
2018-06-13 16:02:16 +00:00
Tomáš Chvátal
1469199147 Accepting request 615035 from home:AndreasStieger:branches:network:chromium
- Chromium 67.0.3396.79: 
  * CVE-2018-6148: Incorrect handling of CSP header (boo#1096508)

OBS-URL: https://build.opensuse.org/request/show/615035
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1135
2018-06-08 04:17:04 +00:00
Tomáš Chvátal
2f7245ecf5 - Require ffmpeg >= 4.0 bsc#1095545
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1134
2018-06-01 17:46:47 +00:00
Tomáš Chvátal
eeddc0df2b - Update to 67.0.3396.62 bsc#1095163
* CVE-2018-6123: Use after free in Blink.
  * CVE-2018-6124: Type confusion in Blink.
  * CVE-2018-6125: Overly permissive policy in WebUSB.
  * CVE-2018-6126: Heap buffer overflow in Skia.
  * CVE-2018-6127: Use after free in indexedDB.
  * CVE-2018-6128: uXSS in Chrome on iOS.
  * CVE-2018-6129: Out of bounds memory access in WebRTC.
  * CVE-2018-6130: Out of bounds memory access in WebRTC.
  * CVE-2018-6131: Incorrect mutability protection in WebAssembly.
  * CVE-2018-6132: Use of uninitialized memory in WebRTC.
  * CVE-2018-6133: URL spoof in Omnibox.
  * CVE-2018-6134: Referrer Policy bypass in Blink.
  * CVE-2018-6135: UI spoofing in Blink.
  * CVE-2018-6136: Out of bounds memory access in V8.
  * CVE-2018-6137: Leak of visited status of page in Blink.
  * CVE-2018-6138: Overly permissive policy in Extensions.
  * CVE-2018-6139: Restrictions bypass in the debugger extension API.
  * CVE-2018-6140: Restrictions bypass in the debugger extension API.
  * CVE-2018-6141: Heap buffer overflow in Skia.
  * CVE-2018-6142: Out of bounds memory access in V8.
  * CVE-2018-6143: Out of bounds memory access in V8.
  * CVE-2018-6144: Out of bounds memory access in PDFium.
  * CVE-2018-6145: Incorrect escaping of MathML in Blink.
  * CVE-2018-6147: Password fields not taking advantage of OS protections in Views.
- Add patches to build on aarch and remove obsolete one:
  * chromium-crashpad-aarch64-fix.patch
  * chromium-skia-aarch64-buildfix.patch
  * chromium-65.0.3325.162-skia-aarch64-buildfix.patch
  * chromium-skia-neon.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1133
2018-05-30 11:20:59 +00:00
Tomáš Chvátal
481230dcc1 Accepting request 613035 from network:chromium
- Up to 67.0.3396.62
- Up to chromium-67.0.3396.56
- Fix SLE12 builds again
- Bump to 67.0.3396.48
- Fix AArch64 build with chromium-crashpad-aarch64-fix.patch
- Up to 67.0.3393.40
- Extend patch chromium-non-void-return.patch

- Fix AArch64 build with chromium-skia-aarch64-buildfix.patch

- Add patch chromium-skia-system-fontconfig.patch bsc#1092272
- Up to 67.0.3393.30

- Up to chromium-67.0.3396.18

- Up to 67.0.3393.4
- Refresh patch exclude_ymp.patch

- Bump to 67.0.3386.1

- Bump to 67.0.3381.1

- Bump to 67.0.3377.1

- Bump to 67.0.3371.0
- Remove no longer needed chromium-gcc7.patch
- Rebase fix_building_widevinecdm_with_chromium.patch to allow
  widevine builds
- Bump to 66.0.3359.33
- Version bump to 66.0.3359.26

OBS-URL: https://build.opensuse.org/request/show/613035
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1132
2018-05-30 11:15:30 +00:00
Tomáš Chvátal
6f2d7ed7c8 Accepting request 612433 from home:AndreasStieger:branches:network:chromium
- on SLE 12 with SUSE PackageHub 12, do not require the SDK for
  libwebpmux1 (bsc#1070421)

OBS-URL: https://build.opensuse.org/request/show/612433
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1130
2018-05-27 05:20:49 +00:00
Tomáš Chvátal
16ca4874c4 Accepting request 612364 from home:AndreasStieger:branches:network:chromium
Fix installation issue on SUSE PackageHub 12 with libminizip1 (bsc#1093031)

OBS-URL: https://build.opensuse.org/request/show/612364
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1129
2018-05-26 11:09:04 +00:00
Tomáš Chvátal
be69def5fd Accepting request 609001 from home:AndreasStieger:branches:network:chromium
Chromium 66.0.3359.181

OBS-URL: https://build.opensuse.org/request/show/609001
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1127
2018-05-16 07:48:41 +00:00
Tomáš Chvátal
697ec8f2e6 Accepting request 606435 from home:AndreasStieger:branches:network:chromium
Chromium 66.0.3359.170 (bsc#1092923)

OBS-URL: https://build.opensuse.org/request/show/606435
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1125
2018-05-11 12:31:02 +00:00
Tomáš Chvátal
41cf46f1bc - Add patch chromium-skia-system-fontconfig.patch to fix
bsc#1092272

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1123
2018-05-09 08:39:35 +00:00
Tomáš Chvátal
2f9393b4fc Accepting request 605672 from home:Guillaume_G:branches:openSUSE:Factory:ARM
- Enable build on AArch64
- Fix build on AArch64:
  * set target_cpu to arm64
  * disable tcmalloc and swiftshader for aarch64
  * Add new patches:
    - chromium-65.0.3325.162-skia-aarch64-buildfix.patch
    - chromium-skia-neon.patch

OBS-URL: https://build.opensuse.org/request/show/605672
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1122
2018-05-09 08:24:10 +00:00
Tomáš Chvátal
3ab47fb6c6 Accepting request 602239 from home:AndreasStieger:branches:network:chromium
CVE-2018-6118: Use after free in Media Cache (bsc#1091288)

OBS-URL: https://build.opensuse.org/request/show/602239
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1120
2018-04-28 09:25:41 +00:00
Tomáš Chvátal
f97a92fb80 - Up to chromium-67.0.3396.18
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1119
2018-04-27 08:25:54 +00:00
Tomáš Chvátal
cc538a1940 Accepting request 597887 from home:AndreasStieger:branches:network:chromium
please license digger

OBS-URL: https://build.opensuse.org/request/show/597887
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1117
2018-04-19 05:59:22 +00:00
Tomáš Chvátal
c7ed536074 - Add patch to fix missing folder from tarball:
* add-missing-blink-tools.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1116
2018-04-18 09:14:57 +00:00
Tomáš Chvátal
284e3112b5 - Version bump to chromium 66.0.3359.117 bsc#1090000:
* CVE-2018-6085: Use after free in Disk Cache
  * CVE-2018-6086: Use after free in Disk Cache
  * CVE-2018-6087: Use after free in WebAssembly
  * CVE-2018-6088: Use after free in PDFium
  * CVE-2018-6089: Same origin policy bypass in Service Worker
  * CVE-2018-6090: Heap buffer overflow in Skia
  * CVE-2018-6091: Incorrect handling of plug-ins by Service Worker
  * CVE-2018-6092: Integer overflow in WebAssembly
  * CVE-2018-6093: Same origin bypass in Service Worker
  * CVE-2018-6094: Exploit hardening regression in Oilpan
  * CVE-2018-6095: Lack of meaningful user interaction requirement before file upload
  * CVE-2018-6096: Fullscreen UI spoof
  * CVE-2018-6097: Fullscreen UI spoof
  * CVE-2018-6098: URL spoof in Omnibox
  * CVE-2018-6099: CORS bypass in ServiceWorker
  * CVE-2018-6100: URL spoof in Omnibox
  * CVE-2018-6101: Insufficient protection of remote debugging prototol in DevTools 
  * CVE-2018-6102: URL spoof in Omnibox
  * CVE-2018-6103: UI spoof in Permissions
  * CVE-2018-6104: URL spoof in Omnibox
  * CVE-2018-6105: URL spoof in Omnibox
  * CVE-2018-6106: Incorrect handling of promises in V8
  * CVE-2018-6107: URL spoof in Omnibox
  * CVE-2018-6108: URL spoof in Omnibox
  * CVE-2018-6109: Incorrect handling of files by FileAPI
  * CVE-2018-6110: Incorrect handling of plaintext files via file:// 
  * CVE-2018-6111: Heap-use-after-free in DevTools
  * CVE-2018-6112: Incorrect URL handling in DevTools
  * CVE-2018-6113: URL spoof in Navigation

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1115
2018-04-18 09:13:39 +00:00
Tomáš Chvátal
761036a084 Accepting request 597716 from network:chromium
- Up to 66.0.3359.81
- Bump to 66.0.3359.66
- Update chromium-gcc7.patch to include more quirks
- Bump to 66.0.3359.45
- Bump to 66.0.3359.33
- Version bump to 66.0.3359.26
- Bump the requirement for the clang version
- Conditionalize harfbuzz switch
- Update to 66.0.3359.22
- Apply patches using %autopatch
- Add patch to build with gcc7 properly chromium-gcc7.patch
- Drop patch chromium-sandbox-pie.patch as we have pie default now
- Add patch to build with leap variant of drm chromium-drm.patch
- Add patch to build ffmpeg from system chromium-ffmpeg.patch

- Up to 66.0.3355.0
- Disable clang by default again

- Up to 66.0.3350.0

- Drop patch fix_network_api_crash.patch

- Bump to 66.0.3343.3

- Bump to 65.0.3325.51

- Disable gconf support
- Bump to 65.0.3325.31
- Update to 65.0.3325.18
- Try to have automatic ozone platform detection

OBS-URL: https://build.opensuse.org/request/show/597716
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1114
2018-04-18 08:59:31 +00:00
Tomáš Chvátal
7fc836ab2a - Add vaapi patches:
* chromium-vaapi-init.patch
  * chromium-vaapi.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1112
2018-04-08 10:50:56 +00:00
Tomáš Chvátal
a18b38564b OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1111 2018-04-07 06:55:21 +00:00
Tomáš Chvátal
4352630548 - Use memory-constraints package to limit threads as needed
>>>>>>> ./chromium.changes.r47afdab4f36d0667875ab6cd647e0111

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1110
2018-04-06 12:59:51 +00:00
Tomáš Chvátal
1e552151c1 Accepting request 589652 from home:AndreasStieger:branches:network:chromium
- Update to Chromium 65.0.3325.181:
  * Various security relevant fixes from internal audits, fuzzing
    and other initiatives (boo#1086124)

OBS-URL: https://build.opensuse.org/request/show/589652
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1108
2018-03-21 07:51:13 +00:00
Tomáš Chvátal
ba6f498dbf - Use both freetype and harfbuzz either bundled or system
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1106
2018-03-20 12:34:27 +00:00
Tomáš Chvátal
020928a31f - Version update to 65.0.3325.162:
* Various stability fixes only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1104
2018-03-14 14:32:05 +00:00
Tomáš Chvátal
3b4d1633af - Bundle the harfbuzz on < 15.0 release as we would have to
use requires_ge for the library itself later on otherwise

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1102
2018-03-14 09:01:19 +00:00
Tomáš Chvátal
600e9636b9 - Add patch chromium-drm.patch to make sure to build with Leap 42.3
variant of libdrm

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1101
2018-03-09 11:08:34 +00:00
Tomáš Chvátal
d58f014baa - Make sure to require gcc7
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1098
2018-03-09 09:11:04 +00:00
Tomáš Chvátal
9f6153e9f7 - Version update to 65.0.3325.146 bsc#1084296:
* High CVE-2017-11215: Use after free in Flash.
  * High CVE-2017-11225: Use after free in Flash.
  * High CVE-2018-6060: Use after free in Blink.
  * High CVE-2018-6061: Race condition in V8.
  * High CVE-2018-6062: Heap buffer overflow in Skia.
  * High CVE-2018-6057: Incorrect permissions on shared memory.
  * High CVE-2018-6063: Incorrect permissions on shared memory.
  * High CVE-2018-6064: Type confusion in V8.
  * High CVE-2018-6065: Integer overflow in V8.
  * Medium CVE-2018-6066: Same Origin Bypass via canvas.
  * Medium CVE-2018-6067: Buffer overflow in Skia.
  * Medium CVE-2018-6068: Object lifecycle issues in Chrome Custom Tab.
  * Medium CVE-2018-6069: Stack buffer overflow in Skia.
  * Medium CVE-2018-6070: CSP bypass through extensions.
  * Medium CVE-2018-6071: Heap bufffer overflow in Skia.
  * Medium CVE-2018-6072: Integer overflow in PDFium.
  * Medium CVE-2018-6073: Heap bufffer overflow in WebGL.
  * Medium CVE-2018-6074: Mark-of-the-Web bypass.
  * Medium CVE-2018-6075: Overly permissive cross origin downloads.
  * Medium CVE-2018-6076: Incorrect handling of URL fragment identifiers in Blink.
  * Medium CVE-2018-6077: Timing attack using SVG filters.
  * Medium CVE-2018-6078: URL Spoof in OmniBox.
  * Medium CVE-2018-6079: Information disclosure via texture data in WebGL.
  * Medium CVE-2018-6080: Information disclosure in IPC call.
  * Low CVE-2018-6081: XSS in interstitials.
  * Low CVE-2018-6082: Circumvention of port blocking.
  * Low CVE-2018-6083: Incorrect processing of AppManifests.
- Add new patches:
  * chromium-compiler.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1097
2018-03-08 09:07:27 +00:00
Tomáš Chvátal
3cdbd60cae Accepting request 584217 from network:chromium
- Bump to 65.0.3325.146
- Add another codepoint to chromium-non-void-return.patch
- Bump to 65.0.3325.106
- Add patch for mojo build with gcc mojo.patch

- Keep ozone still disabled

- Build with clang now

- Update fix-gn-bootstrap.diff
- Add patch chromium-glibc-2.27.patch
- Add patch chromium-compiler.patch

- Bump to 65.0.3325.73

- Bump to 65.0.3325.51

- Disable gconf support
- Bump to 65.0.3325.31
- Update to 65.0.3325.18
- Try to have automatic ozone platform detection
- Bump to 65.0.3322.3
- Bump to 65.0.3311.3
- Drop chromium-63.0.3289.84-fix-ft-hb-unbundle.patch

- add chromium-63.0.3289.84-fix-ft-hb-unbundle.patch to make sure
  we use system freetype/harfbuzz

- Make sure to use system freetype too

OBS-URL: https://build.opensuse.org/request/show/584217
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1096
2018-03-08 08:58:24 +00:00
Tomáš Chvátal
835d511e7d Accepting request 579831 from home:AndreasStieger:branches:network:chromium
Chromium 64.0.3282.186

OBS-URL: https://build.opensuse.org/request/show/579831
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1094
2018-02-24 19:26:14 +00:00
Tomáš Chvátal
f1cf6b5411 Accepting request 576494 from home:AndreasStieger:branches:network:chromium
- update to 64.0.3282.167 (bsc#1080920):
  * CVE-2018-6056: Incorrect derived class instantiation in V8

OBS-URL: https://build.opensuse.org/request/show/576494
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1092
2018-02-14 12:16:31 +00:00
Tomáš Chvátal
c3a004cd49 - Version update to 64.0.3282.140 bsc#1079021:
* Various asan fixes bsc#1078463 CVE-2018-6406

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1090
2018-02-02 11:22:25 +00:00
Tomáš Chvátal
e4700b8d33 Accepting request 571983 from home:dimstar:Factory
Make build one dep cheaper; no need for procps

OBS-URL: https://build.opensuse.org/request/show/571983
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1089
2018-02-02 11:10:25 +00:00
Tomáš Chvátal
6978e40984 - Fix default page to not point to 404
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1087
2018-01-29 13:08:00 +00:00
Tomáš Chvátal
b0f3666621 - Install swiftshader objects too as they are needed
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1085
2018-01-29 12:48:04 +00:00
Tomáš Chvátal
b37d7ce573 breaks up runtime bsc#1077722
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1083
2018-01-26 13:55:49 +00:00
Tomáš Chvátal
d8c176b8c3 - Disable ozone stuff conditions for now as the headless mode
breaks up runtime

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1082
2018-01-26 13:52:01 +00:00
Tomáš Chvátal
747181668b - Switch to gcc7 on Leap builds
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1080
2018-01-25 09:52:21 +00:00
Tomáš Chvátal
e15ebd32ad - Version update to 64.0.3282.119 bsc#1077571:
* High CVE-2018-6031: Use after free in PDFium. Reported by Anonymous on 2017-11-01
  * High CVE-2018-6032: Same origin bypass in Shared Worker. Reported by Jun Kokatsu (@shhnjk) on 2017-11-20
  * High CVE-2018-6033: Race when opening downloaded files. Reported by Juho Nurminen on 2017-12-09
  * Medium CVE-2018-6034: Integer overflow in Blink. Reported by Tobias Klein (www.trapkit.de) on 2017-11-12
  * Medium CVE-2018-6035: Insufficient isolation of devtools from extensions. Reported by Rob Wu on 2017-12-23
  * Medium CVE-2018-6036: Integer underflow in WebAssembly. Reported by The UK's National Cyber Security Centre (NCSC) on 2017-11-30
  * Medium CVE-2018-6037: Insufficient user gesture requirements in autofill. Reported by Paul Stone of Context Information Security on 2017-08-09
  * Medium CVE-2018-6038: Heap buffer overflow in WebGL. Reported by cloudfuzzer on 2017-10-12
  * Medium CVE-2018-6039: XSS in DevTools. Reported by Juho Nurminen on 2017-10-17
  * Medium CVE-2018-6040: Content security policy bypass. Reported by WenXu Wu of Tencent's Xuanwu Lab on 2017-10-26
  * Medium CVE-2018-6041: URL spoof in Navigation. Reported by Luan Herrera on 2017-08-29
  * Medium CVE-2018-6042: URL spoof in OmniBox. Reported by Khalil Zhani on 2017-10-12
  * Medium CVE-2018-6043: Insufficient escaping with external URL handlers. Reported by 0x09AL on 2017-11-16
  * Medium CVE-2018-6045: Insufficient isolation of devtools from extensions. Reported by Rob Wu on 2017-12-23
  * Medium CVE-2018-6046: Insufficient isolation of devtools from extensions. Reported by Rob Wu on 2017-12-31
  * Medium CVE-2018-6047: Cross origin URL leak in WebGL. Reported by Masato Kinugawa on 2018-01-08
  * Low CVE-2018-6048: Referrer policy bypass in Blink. Reported by Jun Kokatsu (@shhnjk) on 2017-09-08
  * Low CVE-2017-15420: URL spoofing in Omnibox. Reported by Drew Springall (@_aaspring_) on 2017-10-05
  * Low CVE-2018-6049: UI spoof in Permissions. Reported by WenXu Wu of Tencent's Xuanwu Lab on 2017-10-13
  * Low CVE-2018-6050: URL spoof in OmniBox. Reported by Jonathan Kew on 2017-10-15
  * Low CVE-2018-6051: Referrer leak in XSS Auditor. Reported by Antonio Sanso (@asanso) on 2014-12-11
  * Low CVE-2018-6052: Incomplete no-referrer policy implementation. Reported by Tanner Emek on 2016-05-28
  * Low CVE-2018-6053: Leak of page thumbnails in New Tab Page. Reported by Asset Kabdenov on 2017-08-23
  * Low CVE-2018-6054: Use after free in WebUI. Reported by Rob Wu on 2017-12-24
- Add patches:
  * chromium-angle.patch
  * chromium-memcpy.patch
- Drop patch:
  * chromium-gcc.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1079
2018-01-25 09:50:45 +00:00
Tomáš Chvátal
2f97f56097 Accepting request 569452 from network:chromium
- Up to 64.0.3282.119

- Up to 64.0.3282.85

- Up to 64.0.3282.71

- Add patch to build with gcc chromium-angle.patch

- Bumpy to 64.0.3282.39

- Explicitely describe what ozone parts we want

- Bump to 64.0.3282.24
- Enable system icu again
- Tweak the deps to match current setup
- Add patch chromium-memcpy.patch

- Minimize desktop name to not take so much space
- Bumpyty to 64.0.3282.14

- Bumpy to 64.0.3278.0

- Drop chromium-64.0.3253.3-gpu_lists_version.h.patch
- Drop chromium-gcc.patch

- Up to 64.0.3269.3

- Add patch chromium-non-void-return.patch
- Add patch chromium-64.0.3253.3-gpu_lists_version.h.patch
- Bump to 64.0.3253.3

OBS-URL: https://build.opensuse.org/request/show/569452
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1078
2018-01-25 09:39:46 +00:00
b415f021de Accepting request 561745 from home:AndreasStieger:branches:network:chromium
Chromium 63.0.3239.132

OBS-URL: https://build.opensuse.org/request/show/561745
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1076
2018-01-05 08:37:52 +00:00
Tomáš Chvátal
d19de968aa - Version update to 63.0.3239.108 bsc#1072976:
* CVE-2017-15429: UXSS in V8
  * Various fuzzing fixes

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1074
2017-12-15 09:28:50 +00:00
Tomáš Chvátal
a1a8605f8b - Update to 62.0.3202.94:
* multiple minor rendering related fixes

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1072
2017-12-07 09:49:58 +00:00
Tomáš Chvátal
67fcd38e0e - Version update to 63.0.3239.84 bsc#1071691:
* Critical CVE-2017-15407: Out of bounds write in QUIC.
  * High CVE-2017-15408: Heap buffer overflow in PDFium.
  * High CVE-2017-15409: Out of bounds write in Skia.
  * High CVE-2017-15410: Use after free in PDFium.
  * High CVE-2017-15411: Use after free in PDFium.
  * High CVE-2017-15412: Use after free in libXML.
  * High CVE-2017-15413: Type confusion in WebAssembly.
  * Medium CVE-2017-15415: Pointer information disclosure in IPC call.
  * Medium CVE-2017-15416: Out of bounds read in Blink.
  * Medium CVE-2017-15417: Cross origin information disclosure in Skia.
  * Medium CVE-2017-15418: Use of uninitialized value in Skia.
  * Medium CVE-2017-15419: Cross origin leak of redirect URL in Blink.
  * Medium CVE-2017-15420: URL spoofing in Omnibox.
  * Medium CVE-2017-15422: Integer overflow in ICU.
  * Low CVE-2017-15423: Issue with SPAKE implementation in BoringSSL.
  * Low CVE-2017-15424: URL Spoof in Omnibox.
  * Low CVE-2017-15425: URL Spoof in Omnibox.
  * Low CVE-2017-15426: URL Spoof in Omnibox.
  * Low CVE-2017-15427: Insufficient blocking of JavaScript in Omnibox.
- Rebase fix-gn-bootstrap.diff
- Drop merged patches:
  * chromium-gcc5.patch
  * chromium-60.0.3112.113-breakpad-ucontext.patch
  * chromium-62.0.3202.62-correct-cplusplus-check.patch
- Add new patches:
  * chromium-non-void-return.patch
  * chromium-gcc.patch
- Version update to 62.0.3202.89 bsc#1066851:
  * CVE-2017-15398: Stack buffer overflow in QUIC

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1071
2017-12-07 09:45:49 +00:00
Tomáš Chvátal
5bb1432641 Accepting request 554955 from network:chromium
- Bump to 63.0.3239.84

- Up to 63.0.3239.70

- Up to 63.0.3239.52

- Add patch to make gcc parsing happy:
  * chromium-non-void-return.patch
- Add patch to build with gcc:
  * chromium-gcc.patch
- Fix the tarball unpacking to unroll all the required content
- Update to 63.0.3239.30
- Drop patch chromium-60.0.3112.113-breakpad-ucontext.patch
- Drop patch chromium-sysroot.patch
- Bump to 63.0.3236.0
- Bump to 63.0.3230.0
- Update to 63.0.3223.8
- Rebase fix-gn-boostrap.diff
- Remove chromium-gcc5.patch
- Bump to 63.0.3218.0
- Rebase fix-gn-bootstrap.diff
- Add chromium-sysroot.patch

- Version update to 62.0.3202.18

- Update to latest
- Switch to system libxml again
- Add more folders to be kept in archive

- Build with gcc6 on leap as we now require --stdc-14

OBS-URL: https://build.opensuse.org/request/show/554955
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1070
2017-12-07 09:41:26 +00:00
Ismail Dönmez
5d05275c7c - BuildRequire nodejs8 instead of nodejs6 for suse_version >= 1330
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1068
2017-11-22 11:15:20 +00:00
Ismail Dönmez
373a58ceed - Change BuildRequires: nodejs6 -> nodejs8
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1067
2017-11-22 11:07:02 +00:00
Tomáš Chvátal
0b99f8a35b Accepting request 542077 from home:AndreasStieger:branches:network:chromium
62.0.3202.94
fix rebuilds in same chroot

OBS-URL: https://build.opensuse.org/request/show/542077
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1065
2017-11-15 16:18:16 +00:00
Tomáš Chvátal
7adcdc5439 - Drop upstream merged chromium-sandbox.patch
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1063
2017-11-07 10:22:21 +00:00
Tomáš Chvátal
6aa8cfb260 - Version update to 62.0.3202.89 bsc#1066851:
* CVE-2017-15398: Stack buffer overflow in QUIC
  * CVE-2017-15399: Use after free in V8
  * CVE-2017-5126: Use after free in PDFium.
  * CVE-2017-5127: Use after free in PDFium.

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1062
2017-11-07 10:15:26 +00:00
Tomáš Chvátal
c7736042bc - Restrict the version on jpeg to not waste build power
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1061
2017-11-03 12:39:28 +00:00