* CVE-2025-0762: Use after free in DevTools
- Chromium 132.0.6834.110 (boo#1236306)
* CVE-2025-0611: Object corruption in V8
* CVE-2025-0612: Out of bounds memory access in V8
- Chromium 132.0.6834.83
(stable released 2024-01-14) (bsc#1235892)
* CVE-2025-0434: Out of bounds memory access in V8
* CVE-2025-0435: Inappropriate implementation in Navigation
* CVE-2025-0436: Integer overflow in Skia
* CVE-2025-0437: Out of bounds read in Metrics
* CVE-2025-0438: Stack buffer overflow in Tracing
* CVE-2025-0439: Race in Frames
* CVE-2025-0440: Inappropriate implementation in Fullscreen
* CVE-2025-0441: Inappropriate implementation in Fenced Frames
* CVE-2025-0442: Inappropriate implementation in Payments
* CVE-2025-0443: Insufficient data validation in Extensions
* CVE-2025-0446: Inappropriate implementation in Extensions
* CVE-2025-0447: Inappropriate implementation in Navigation
* CVE-2025-0448: Inappropriate implementation in Compositing
- dropped patches:
* chromium-131-unbundle-enable-freetype.patch (upstream)
- added patches:
* chromium-8d882c289f17e3a67d6d67d5ff7e9d16ebb4f19a.patch
(apply git upstream reverse for 15.x with llvm17)
* chromium-93-ffmpeg-4.4-rest.patch
(split off to only apply after the reverse)
* chromium-132-old_libdrm.patch
(applied only on 15.5 with libdrm < 2.4.116)
* chromium-132-pdfium-explicit-template.patch
OBS-URL: https://build.opensuse.org/package/show/network:chromium/ungoogled-chromium?expand=0&rev=98
* CVE-2024-10487: Out of bounds write in Dawn
* CVE-2024-10488: Use after free in WebRTC
* CVE-2024-10229: Inappropriate implementation in Extensions
* CVE-2024-10230: Type Confusion in V8
* CVE-2024-10231: Type Confusion in V8
* CVE-2024-9954: Use after free in AI
* CVE-2024-9955: Use after free in Web Authentication
* CVE-2024-9956: Inappropriate implementation in Web Authentication
* CVE-2024-9957: Use after free in UI
* CVE-2024-9958: Inappropriate implementation in PictureInPicture
* CVE-2024-9959: Use after free in DevTools
* CVE-2024-9960: Use after free in Dawn
* CVE-2024-9961: Use after free in Parcel Tracking
* CVE-2024-9962: Inappropriate implementation in Permissions
* CVE-2024-9963: Insufficient data validation in Downloads
* CVE-2024-9964: Inappropriate implementation in Payments
* CVE-2024-9965: Insufficient data validation in DevTools
* CVE-2024-9966: Inappropriate implementation in Navigations
- modified patches:
* exclude_ymp.patch update context
* chromium-125-compiler.patch update context
* chromium-125-lp155-typename.patch drop hunks for rewritten
proto_fetcher.h
* chromium-127-bindgen.patch update context
- added patches:
* chromium-130-missing-includes.patch include optional, stack
* chromium-130-no-hardware_destructive_interference_size.patch
workaround for older libcpp
- drop from keeplibs:
OBS-URL: https://build.opensuse.org/package/show/network:chromium/ungoogled-chromium?expand=0&rev=96