Pull request for security update for chromium #200

Closed
msmeissn wants to merge 1 commits from msmeissn/PackageHub:maintenance-update-1761724628 into leap-16.0
Member

OLD, replaced by !201: pool/chromium!14

OLD, replaced by !201: pool/chromium!14
msmeissn added 1 commit 2025-10-29 08:57:27 +01:00
msmeissn added 1 commit 2025-10-29 08:57:28 +01:00
autogits_workflow_pr_bot requested review from autogits_obs_staging_bot 2025-10-29 08:57:45 +01:00
autogits_workflow_pr_bot requested review from maintenance-release-review 2025-10-29 08:57:45 +01:00
autogits_workflow_pr_bot requested review from opensuse-review 2025-10-29 08:57:45 +01:00
autogits_workflow_pr_bot requested review from qam-openqa-review 2025-10-29 08:57:45 +01:00

Review by maintenance-release-review represents a group of reviewers: abergmann, amattiazzo, bfilho, cmatos, crazybyte, emanuelecappello, gsonnu, maintenance-robot, mauriziogalli, mbozicevic, mimi_vx, mschnitzer, pluskalm, rfrohl, slemke .

Do not use standard review interface to review on behalf of the group.
To accept the review on behalf of the group, create the following comment: @maintenance-release-review: approve.
To request changes on behalf of the group, create the following comment: @maintenance-release-review: decline followed with lines justifying the decision.
Future edits of the comments are ignored, a new comment is required to change the review state.

Submitter is member of this review group, hence they are excluded from being one of the reviewers here

Review by maintenance-release-review represents a group of reviewers: abergmann, amattiazzo, bfilho, cmatos, crazybyte, emanuelecappello, gsonnu, maintenance-robot, mauriziogalli, mbozicevic, mimi_vx, mschnitzer, pluskalm, rfrohl, slemke . Do **not** use standard review interface to review on behalf of the group. To accept the review on behalf of the group, create the following comment: `@maintenance-release-review: approve`. To request changes on behalf of the group, create the following comment: `@maintenance-release-review: decline` followed with lines justifying the decision. Future edits of the comments are ignored, a new comment is required to change the review state. Submitter is member of this review group, hence they are excluded from being one of the reviewers here

Review by opensuse-review represents a group of reviewers: alarrosa, anag, atartamo, bigironman, darix, dimstar, dmach, eroca, jdsn, jengelh, mcalabkova, mstrigl, nkrapp, oertel, RBrownSUSE, simotek, smithfarm .

Do not use standard review interface to review on behalf of the group.
To accept the review on behalf of the group, create the following comment: @opensuse-review: approve.
To request changes on behalf of the group, create the following comment: @opensuse-review: decline followed with lines justifying the decision.
Future edits of the comments are ignored, a new comment is required to change the review state.

Review by opensuse-review represents a group of reviewers: alarrosa, anag, atartamo, bigironman, darix, dimstar, dmach, eroca, jdsn, jengelh, mcalabkova, mstrigl, nkrapp, oertel, RBrownSUSE, simotek, smithfarm . Do **not** use standard review interface to review on behalf of the group. To accept the review on behalf of the group, create the following comment: `@opensuse-review: approve`. To request changes on behalf of the group, create the following comment: `@opensuse-review: decline` followed with lines justifying the decision. Future edits of the comments are ignored, a new comment is required to change the review state.
Build is started in https://build.opensuse.org/project/show/openSUSE:Backports:SLE-16.0:PullRequest:200 .

Review by qam-openqa-review represents a group of reviewers: mimi_vx, mschnitzer, openqa-maintenance, foursixnine-openqa, szarate .

Do not use standard review interface to review on behalf of the group.
To accept the review on behalf of the group, create the following comment: @qam-openqa-review: approve.
To request changes on behalf of the group, create the following comment: @qam-openqa-review: decline followed with lines justifying the decision.
Future edits of the comments are ignored, a new comment is required to change the review state.

Submitter is member of this review group, hence they are excluded from being one of the reviewers here

Review by qam-openqa-review represents a group of reviewers: mimi_vx, mschnitzer, openqa-maintenance, foursixnine-openqa, szarate . Do **not** use standard review interface to review on behalf of the group. To accept the review on behalf of the group, create the following comment: `@qam-openqa-review: approve`. To request changes on behalf of the group, create the following comment: `@qam-openqa-review: decline` followed with lines justifying the decision. Future edits of the comments are ignored, a new comment is required to change the review state. Submitter is member of this review group, hence they are excluded from being one of the reviewers here
AndreasStieger reviewed 2025-10-29 09:40:17 +01:00
@@ -0,0 +1,13 @@
<patchinfo>
<issue tracker="cve" id="2025-54874">VUL-0: CVE-2025-54874: TRACKERBUG: openjpeg: missing error check can lead to the use of an uninitialized pointer and cause an out-of-bounds heap</issue>
First-time contributor

This CVE is from a removed patch, not a newly fixed CVE.

In fact there does not seem to be any security advisory (yet) on the announcement.

This CVE is from a removed patch, not a newly fixed CVE. In fact there does not seem to be any security advisory (yet) on the [announcement](https://chromereleases.googleblog.com/2025/10/stable-channel-update-for-desktop_28.html).
Member

updated in #201

Marcus is sick and I am officially on FTO, so closing 200 may take a bit

updated in https://src.opensuse.org/products/PackageHub/pulls/201 Marcus is sick and I am officially on FTO, so closing 200 may take a bit
Author
Member

robert did a new one

robert did a new one
msmeissn closed this pull request 2025-10-29 14:32:32 +01:00
Some checks are pending
ObsStaging OBS Staging build

Pull request closed

Sign in to join this conversation.