Commit Graph

921 Commits

Author SHA256 Message Date
Tomáš Chvátal
edcc3f216a - Update to 73.0.3683.75 bsc#1129059:
* CVE-2019-5787: Use after free in Canvas.
  * CVE-2019-5788: Use after free in FileAPI.
  * CVE-2019-5789: Use after free in WebMIDI.
  * CVE-2019-5790: Heap buffer overflow in V8.
  * CVE-2019-5791: Type confusion in V8.
  * CVE-2019-5792: Integer overflow in PDFium.
  * CVE-2019-5793: Excessive permissions for private API in Extensions.
  * CVE-2019-5794: Security UI spoofing.
  * CVE-2019-5795: Integer overflow in PDFium.
  * CVE-2019-5796: Race condition in Extensions.
  * CVE-2019-5797: Race condition in DOMStorage.
  * CVE-2019-5798: Out of bounds read in Skia.
  * CVE-2019-5799: CSP bypass with blob URL.
  * CVE-2019-5800: CSP bypass with blob URL.
  * CVE-2019-5801: Incorrect Omnibox display on iOS.
  * CVE-2019-5802: Security UI spoofing.
  * CVE-2019-5803: CSP bypass with Javascript URLs'.
  * CVE-2019-5804: Command line command injection on Windows.
- Update patches:
  * chromium-buildname.patch
  * chromium-non-void-return.patch
  * chromium-old-glibc.patch
  * chromium-old-libva.patch
  * chromium-vaapi.patch
- Removed patches:
  * chromium-crashpad-fix_aarch64.patch
  * chromium-webrtc-includes.patch
- Added patches:
  * chromium-gcc.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1232
2019-03-13 10:30:46 +00:00
Tomáš Chvátal
ac4523dd6c Accepting request 684653 from network:chromium
- Add patch to fix crashpad build on aarch64:
  * chromium-fix_crashpad.patch
- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Update %arm build, but keep it disabled for now, as ld requires 
  lots of RAM
- Up to 72.0.3626.14
- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Increase %limit_build value to avoid OOM
- Rework aarch64 build requirements

- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3

OBS-URL: https://build.opensuse.org/request/show/684653
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1231
2019-03-13 10:16:54 +00:00
Tomáš Chvátal
24ce3c4483 - Drop direct dependency on libgsm, we just need the devel
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1229
2019-03-04 09:32:58 +00:00
Tomáš Chvátal
114aafb998 - Update to 72.0.3626.121:
* fixes bsc#1127602 CVE-2019-5786

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1228
2019-03-02 14:55:44 +00:00
Tomáš Chvátal
072925ce40 - Update to 72.0.3626.119:
* Feature fixes update only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1226
2019-02-25 10:40:32 +00:00
Tomáš Chvátal
6e93bdee45 - Update to 72.0.3626.109:
* This is just feature fixes update

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1224
2019-02-20 14:14:02 +00:00
Tomáš Chvátal
7ccb9e3556 - Update to 72.0.3626.96 bsc#1124936:
* CVE-2019-5784: Inappropriate implementation in V8

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1222
2019-02-11 08:56:29 +00:00
Tomáš Chvátal
bb5e8fd1d9 Accepting request 673189 from home:simotek:branches:network:chromium
- Provide web_browser so chromium can be installed instead of firefox.

OBS-URL: https://build.opensuse.org/request/show/673189
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1221
2019-02-11 08:18:05 +00:00
Tomáš Chvátal
78692c0c15 - Update to 72.0.3626.81 bsc#1123641:
* CVE-2019-5754: Inappropriate implementation in QUIC Networking. Reported by Klzgrad on 2018-12-12
  * CVE-2019-5782:  Inappropriate implementation in V8. Reported by Qixun Zhao of Qihoo 360 Vulcan Team via Tianfu Cup on 2018-11-16
  * CVE-2019-5755: Inappropriate implementation in V8. Reported by Jay Bosamiya on 2018-12-10
  * CVE-2019-5756: Use after free in PDFium. Reported by Anonymous on 2018-10-14   
  * CVE-2019-5757: Type Confusion in SVG. Reported by Alexandru Pitis, Microsoft Browser Vulnerability Research on 2018-12-15
  * CVE-2019-5758: Use after free in Blink. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-11
  * CVE-2019-5759: Use after free in HTML select elements. Reported by Almog Benin on 2018-12-05
  * CVE-2019-5760: Use after free in WebRTC. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-12-05
  * CVE-2019-5761: Use after free in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-13
  * CVE-2019-5762: Use after free in PDFium. Reported by Anonymous on 2018-10-31   
  * CVE-2019-5763: Insufficient validation of untrusted input in V8. Reported by Guang Gong of Alpha Team, Qihoo 360 on 2018-12-13
  * CVE-2019-5764: Use after free in WebRTC. Reported by Eyal Itkin from Check Point Software Technologies on 2018-12-09
  * CVE-2019-5765: Insufficient policy enforcement in the browser. Reported by Sergey Toshin (@bagipro) on 2019-01-16
  * CVE-2019-5766: Insufficient policy enforcement in Canvas. Reported by David Erceg on 2018-11-20
  * CVE-2019-5767: Incorrect security UI in WebAPKs. Reported by Haoran Lu, Yifan Zhang, Luyi Xing, and Xiaojing Liao from Indiana University Bloomington on 2018-11-06
  * CVE-2019-5768: Insufficient policy enforcement in DevTools. Reported by Rob Wu on 2018-01-24
  * CVE-2019-5769: Insufficient validation of untrusted input in Blink. Reported by Guy Eshel on 2018-12-11
  * CVE-2019-5770: Heap buffer overflow in WebGL. Reported by  hemidallt@ on 2018-11-27
  * CVE-2019-5771: Heap buffer overflow in SwiftShader. Reported by Zhe Jin(金哲),Luyao Liu(刘路遥) from Chengdu Security Response Center of Qihoo 360 Technology Co. Ltd on 2018-11-12
  * CVE-2019-5772: Use after free in PDFium. Reported by Zhen Zhou of NSFOCUS Security Team on 2018-11-26
  * CVE-2019-5773: Insufficient data validation in IndexedDB. Reported by Yongke Wang of Tencent's Xuanwu Lab (xlab.tencent.com) on 2018-12-24
  * CVE-2019-5774: Insufficient validation of untrusted input in SafeBrowsing. Reported by Junghwan Kang (ultract) and Juno Im on 2018-11-11
  * CVE-2019-5775: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18
  * CVE-2019-5776: Insufficient policy enforcement in Omnibox. Reported by Lnyas Zhang on 2018-07-14
  * CVE-2019-5777: Insufficient policy enforcement in Omnibox. Reported by Khalil Zhani on 2018-06-04
  * CVE-2019-5778: Insufficient policy enforcement in Extensions. Reported by David Erceg on 2019-01-02
  * CVE-2019-5779: Insufficient policy enforcement in ServiceWorker. Reported by David Erceg on 2018-11-11
  * CVE-2019-5780: Insufficient policy enforcement. Reported by Andreas Hegenberg (folivora.AI GmbH) on 2018-10-03
  * CVE-2019-5781: Insufficient policy enforcement in Omnibox. Reported by evi1m0 of Bilibili Security Team on 2018-10-18

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1218
2019-01-30 09:12:20 +00:00
Tomáš Chvátal
5fa9bed719 Accepting request 670066 from network:chromium
- Add patch to fix aarch64 build:
  * chromium-crashpad-fix_aarch64.patch

- Refresh patch:
  * chromium-non-void-return.patch
- Add new patch to fix aarch64 build:
  * chromium-fix_swiftshader.patch
- Up to 72.0.3626.14

- Update chromium-vaapi.patch
- Update chromium-system-icu.patch
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17
- Up to 68.0.3438.3

OBS-URL: https://build.opensuse.org/request/show/670066
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1217
2019-01-30 08:50:03 +00:00
Tomáš Chvátal
06f0774a1b - Tweak fix_building_widevinecdm_with_chromium.patch to make it
work again bsc#1120429

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1215
2019-01-02 08:31:04 +00:00
776984a083 Accepting request 657998 from home:Guillaume_G:branches:network:chromium
- Update %arm build, but keep it disabled for now, as ld requires lots of RAM

OBS-URL: https://build.opensuse.org/request/show/657998
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1213
2018-12-18 15:06:23 +00:00
Tomáš Chvátal
e2a1708eb1 - Redo chromium-old-libva.patch
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1211
2018-12-13 14:59:32 +00:00
Tomáš Chvátal
63eeaba774 - Version update to 71.0.3578.98 bsc#1119364:
* CVE-2018-17481: Use after free in PDFium

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1210
2018-12-13 14:55:29 +00:00
ed1e607296 Accepting request 657328 from home:Guillaume_G:branches:network:chromium
- Increase %limit_build value to avoid OOM

OBS-URL: https://build.opensuse.org/request/show/657328
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1208
2018-12-11 21:04:21 +00:00
Tomáš Chvátal
7e71b7ef50 - Add patch to build on Leap 42.x:
* chromium-old-libva.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1203
2018-12-06 14:13:38 +00:00
Tomáš Chvátal
68518cfb58 - Version update to 71.0.3578.80 bsc#1118529:
- CVE-2018-17480: Out of bounds write in V8
  - CVE-2018-17481: Use after frees in PDFium
  - CVE-2018-18335: Heap buffer overflow in Skia
  - CVE-2018-18336: Use after free in PDFium
  - CVE-2018-18337: Use after free in Blink
  - CVE-2018-18338: Heap buffer overflow in Canvas
  - CVE-2018-18339: Use after free in WebAudio
  - CVE-2018-18340: Use after free in MediaRecorder
  - CVE-2018-18341: Heap buffer overflow in Blink
  - CVE-2018-18342: Out of bounds write in V8
  - CVE-2018-18343: Use after free in Skia
  - CVE-2018-18344: Inappropriate implementation in Extensions
  - Multiple issues in SQLite via WebSQL
  - CVE-2018-18345: Inappropriate implementation in Site Isolation
  - CVE-2018-18346: Incorrect security UI in Blink
  - CVE-2018-18347: Inappropriate implementation in Navigation
  - CVE-2018-18348: Inappropriate implementation in Omnibox
  - CVE-2018-18349: Insufficient policy enforcement in Blink
  - CVE-2018-18350: Insufficient policy enforcement in Blink
  - CVE-2018-18351: Insufficient policy enforcement in Navigation
  - CVE-2018-18352: Inappropriate implementation in Media
  - CVE-2018-18353: Inappropriate implementation in Network Authentication
  - CVE-2018-18354: Insufficient data validation in Shell Integration
  - CVE-2018-18355: Insufficient policy enforcement in URL Formatter
  - CVE-2018-18356: Use after free in Skia
  - CVE-2018-18357: Insufficient policy enforcement in URL Formatter
  - CVE-2018-18358: Insufficient policy enforcement in Proxy.
  - CVE-2018-18359: Out of bounds read in V8
  - Inappropriate implementation in PDFium

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1201
2018-12-06 08:45:00 +00:00
Tomáš Chvátal
4b47644b46 Accepting request 655505 from network:chromium
- Rework aarch64 build requirements
- Reduce jumbo_file_merge_limit to 8 for aarch64 to avoid OOM
- Fix again aarch64 skia build:
  * chromium-skia-aarch64-buildfix.patch
- Update chromium-non-void-return.patch and use __builtin_abort
  for switch cases of out of enum ranges.
- Up to 71.0.3551.3
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
  * chromium-system-icu.patch
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17
- Up to 68.0.3438.3
- Up to 68.0.3432.3
- Fix AArch64 build with chromium-crashpad-aarch64-fix.patch
- Up to 68.0.3423.2
- Refresh patch chromium-master-prefs-path.patch
- Fix AArch64 build with chromium-skia-aarch64-buildfix.patch
- Add patch chromium-skia-system-fontconfig.patch bsc#1092272
- Up to 67.0.3393.30
- Enable build on AArch64

OBS-URL: https://build.opensuse.org/request/show/655505
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1200
2018-12-06 08:33:56 +00:00
Tomáš Chvátal
6c8c5e50fa - Version update to 70.0.3538.110:
* CVE-2018-17479: Use-after-free in GPU

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1198
2018-11-21 09:29:32 +00:00
Tomáš Chvátal
06cb5a5bbe - Version update to 70.0.3538.102 bsc#1115537 CVE-2018-17478
* CVE-2018-17478: Out of bounds memory access in V8

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1196
2018-11-14 10:06:19 +00:00
Tomáš Chvátal
07670ce47d Accepting request 646219 from home:guoyunhe:branches:network:chromium
- Remove noto-emoji-fonts recommends. noto-emoji-fonts has been
  inactive for a long time. noto-coloremoji-fonts is the current
  recommended emoji fonts from noto. And noto-emoji-fonts (monochrome)
  disables noto-coloremoji-fonts (colorful).

OBS-URL: https://build.opensuse.org/request/show/646219
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1194
2018-11-04 09:31:48 +00:00
Tomáš Chvátal
25483cda80 - Update patch chromium-non-void-return.patch
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1192
2018-10-29 11:14:25 +00:00
Tomáš Chvátal
7e6fa07a38 - Do not meintion armv6 and armv7 in the constraints
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1190
2018-10-25 09:12:09 +00:00
Tomáš Chvátal
566b6f0c9e - Update to 70.0.3538.77:
* Few feature fixes only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1189
2018-10-25 09:11:11 +00:00
Tomáš Chvátal
49648023d2 - Update chromium-old-glibc.patch to contain more tweaked locations
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1187
2018-10-22 16:19:19 +00:00
Tomáš Chvátal
cd1efd9fb5 - Add patch trying to get the pkg to build with libva 1.x releases:
* chromium-libva1.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1185
2018-10-22 11:43:58 +00:00
Tomáš Chvátal
449f1f5bc6 - remove trigger word from spec that trips up legal-auto
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1184
2018-10-19 12:53:28 +00:00
Tomáš Chvátal
049a02a9ed - Reduce the merge number on jumbo files to reduce memory usage bit
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1183
2018-10-19 12:47:27 +00:00
Tomáš Chvátal
e041c3dfe6 - Add back chromium-old-glibc.patch to make sure we build on 42.3
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1182
2018-10-19 12:44:38 +00:00
Tomáš Chvátal
da93a28cfd - Use bundled harfbuzz because we need newer than latest release
- Disable gnome-keyring as it crashes the chromium quite often

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1181
2018-10-17 08:20:53 +00:00
Tomáš Chvátal
73e2538e77 - Update to 70.0.3538.67 bsc#1112111:
* CVE-2018-17462: Sandbox escape in AppCache
  * CVE-2018-17463: Remote code execution in V8
  * CVE to be assigned: Heap buffer overflow in Little CMS in PDFium
  * CVE-2018-17464: URL spoof in Omnibox
  * CVE-2018-17465: Use after free in V8
  * CVE-2018-17466: Memory corruption in Angle
  * CVE-2018-17467: URL spoof in Omnibox
  * CVE-2018-17468: Cross-origin URL disclosure in Blink
  * CVE-2018-17469: Heap buffer overflow in PDFium
  * CVE-2018-17470: Memory corruption in GPU Internals
  * CVE-2018-17471: Security UI occlusion in full screen mode
  * CVE-2018-17472: iframe sandbox escape on iOS
  * CVE-2018-17473: URL spoof in Omnibox
  * CVE-2018-17474: Use after free in Blink
  * CVE-2018-17475: URL spoof in Omnibox
  * CVE-2018-17476: Security UI occlusion in full screen mode
  * CVE-2018-5179: Lack of limits on update() in ServiceWorker
  * CVE-2018-17477: UI spoof in Extensions
- Added patches:
  * chromium-gcc8-constexpr.patch
  * chromium-libusb_interrupt_event_handler.patch
  * chromium-pdfium-include.patch
  * chromium-system-libusb.patch
- Removed patches:
  * chromium-old-glibc.patch
  * chromium-vpx-aarch64.patch
- Updated patches:
  * chromium-gcc8-alignof.patch
  * chromium-non-void-return.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1179
2018-10-17 08:16:52 +00:00
Tomáš Chvátal
9fcd414aff Accepting request 642560 from network:chromium
- System harfbuzz disable as we need git variant :(
- Up 70.0.3538.45
- Up 70.0.3538.35
- Bump the nodejs dependency to 10/8
- Up to 70.0.3538.22
- Up to 70.0.3528.4
- Up to chromium-70.0.3521.2
- Add patch trying to build with system icu:
- Up to chromium-70.0.3510.0
- Up to 69.0.3497.23
- Up to chromium-69.0.3497.12
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch 
- Up to 69.0.3493.3
- Up to 69.0.3486.0
- Up to 69.0.3472.3
- Up to 69.0.3452.0
- Up to 68.0.3440.17
- Up to 68.0.3438.3
- Up to 68.0.3432.3
- Fix AArch64 build with chromium-crashpad-aarch64-fix.patch
- Up to 68.0.3423.2
- Refresh patch chromium-master-prefs-path.patch
- Fix AArch64 build with chromium-skia-aarch64-buildfix.patch
- Add patch chromium-skia-system-fontconfig.patch bsc#1092272
- Up to 67.0.3393.30
- Up to chromium-67.0.3396.18

- Up to 67.0.3393.4
- Refresh patch exclude_ymp.patch

OBS-URL: https://build.opensuse.org/request/show/642560
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1178
2018-10-17 08:03:27 +00:00
Tomáš Chvátal
56d57cc7cc - Keep blank line after autopatch to make SLE12 rpm macros happy
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1175
2018-09-18 09:30:20 +00:00
Tomáš Chvátal
1f40aedc28 - Update to 69.0.3497.100 bsc#1108774
* Fixes from internal audits, fuzzing and other initiatives

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1174
2018-09-18 09:20:49 +00:00
Tomáš Chvátal
56ba7dfdbb - Update to 69.0.3497.100:
* Feature fixes only this time it seems

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1172
2018-09-18 07:30:53 +00:00
53bee415c5 Accepting request 635346 from home:AndreasStieger:branches:network:chromium
Chromium 69.0.3497.92 (boo#1108114, boo#1108175)

OBS-URL: https://build.opensuse.org/request/show/635346
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1168
2018-09-12 14:43:39 +00:00
Tomáš Chvátal
2f583c1436 - Enable vulkan integration
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1167
2018-09-08 12:03:46 +00:00
Tomáš Chvátal
99d5a1a629 - Enable jumbo build to speed things up
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1166
2018-09-08 11:13:32 +00:00
OBS User buildservice-autocommit
cb1b0b1d41 Accepting request 633746 from network:chromium
baserev update by copy to link target

OBS-URL: https://build.opensuse.org/request/show/633746
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1165
2018-09-07 13:41:48 +00:00
OBS User buildservice-autocommit
31ab81bb39 Updating link to change in openSUSE:Factory/chromium revision 195.0
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=67a1925ca098976dc80a430290aabc17
2018-09-07 13:41:48 +00:00
Tomáš Chvátal
895a9457f7 * CVE-2018-16086: Script injection in New Tab Page.
* CVE-2018-16087: Multiple download restriction bypass.
  * CVE-2018-16088: User gesture requirement bypass.

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1164
2018-09-07 07:31:19 +00:00
Tomáš Chvátal
d65cd5410c - Add patch to fix mojo build on 32bit:
* chromium-gcc8-alignof.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1163
2018-09-06 13:59:16 +00:00
Tomáš Chvátal
c6b1b76114 - Split out the gn from this package, obsoletes patches:
* fix-gn-bootstrap.patch
  * chromium-last-commit-position-r0.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1161
2018-09-06 09:14:29 +00:00
Tomáš Chvátal
5adc9ace39 - Version update to 69.0.3497.81 bsc#1107235:
* CVE-2018-16065: Out of bounds write in V8
  * CVE-2018-16066:Out of bounds read in Blink
  * CVE-2018-16067: Out of bounds read in WebAudio
  * CVE-2018-16068: Out of bounds write in Mojo
  * CVE-2018-16069:Out of bounds read in SwiftShader
  * CVE-2018-16070: Integer overflow in Skia
  * CVE-2018-16071: Use after free in WebRTC
  * CVE-2018-16073: Site Isolation bypass after tab restore
  * CVE-2018-16074: Site Isolation bypass using Blob URLS
  * Out of bounds read in Little-CMS
  * CVE-2018-16075: Local file access in Blink
  * CVE-2018-16076: Out of bounds read in PDFium
  * CVE-2018-16077: Content security policy bypass in Blink
  * CVE-2018-16078: Credit card information leak in Autofill
  * CVE-2018-16079: URL spoof in permission dialogs
  * CVE-2018-16080: URL spoof in full screen mode
  * CVE-2018-16081: Local file access in DevTools
  * CVE-2018-16082: Stack buffer overflow in SwiftShader
  * CVE-2018-16083: Out of bounds read in WebRTC
  * CVE-2018-16084: User confirmation bypass in external protocol handling
  * CVE-2018-16085: Use after free in Memory Instrumentation
- Added patches:
  * chromium-old-glibc.patch
  * chromium-system-icu.patch
  * chromium-warnings.patch
- Removed patches:
  * chromium-cors-string.patch
  * chromium-crashpad-aarch64-fix.patch
  * chromium-ffmpeg.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1160
2018-09-06 09:12:59 +00:00
Tomáš Chvátal
28c2e82757 Accepting request 633585 from network:chromium
ok

OBS-URL: https://build.opensuse.org/request/show/633585
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1159
2018-09-06 09:07:00 +00:00
Tomáš Chvátal
d1349a5e64 * bsc#1106341 CVE-2017-15430 Unsafe navigation in Chromecast
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1158
2018-08-29 07:35:30 +00:00
Tomáš Chvátal
0d9877aece - Update to chromium-68.0.3440.106:
* Various feature fixes

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1156
2018-08-08 21:17:26 +00:00
Tomáš Chvátal
d59003b046 - Version update to 68.0.3440.84:
* Various small feature fixes only

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1154
2018-08-01 10:15:35 +00:00
Tomáš Chvátal
670d7f7ebc Accepting request 625370 from home:Guillaume_G:branches:network:chromium
- Add patch to fix aarch64 build:
  * chromium-vpx-aarch64.patch

OBS-URL: https://build.opensuse.org/request/show/625370
OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1152
2018-07-26 06:44:03 +00:00
Tomáš Chvátal
2ec87aff2f - Add patch trying to build chromium on Leap 42.3:
* chromium-gcc7.patch

OBS-URL: https://build.opensuse.org/package/show/network:chromium/chromium?expand=0&rev=1151
2018-07-25 14:29:57 +00:00