From 3640bb5d101e5d28d3e44448906466206f1e7e5f66ba3aef2c2c84ae243d486e Mon Sep 17 00:00:00 2001 From: Robert Frohl Date: Sun, 15 Feb 2026 16:25:10 +0100 Subject: [PATCH 1/5] Update submodules from pool/chromium#36 and create patchinfo.20260215152452177191.255638743075857/_patchinfo --- chromium | 2 +- .../_patchinfo | 45 +++++++++++++++++++ 2 files changed, 46 insertions(+), 1 deletion(-) create mode 100644 patchinfo.20260215152452177191.255638743075857/_patchinfo diff --git a/chromium b/chromium index ff3414e..65a7ae5 160000 --- a/chromium +++ b/chromium @@ -1 +1 @@ -Subproject commit ff3414e963a0c31f77d2972e2e713427db98c2f42f186dbd0c25b5d0ef8664ff +Subproject commit 65a7ae503754819bdcda10d25664598e4680d3459f46649b93b003594c750f82 diff --git a/patchinfo.20260215152452177191.255638743075857/_patchinfo b/patchinfo.20260215152452177191.255638743075857/_patchinfo new file mode 100644 index 0000000..ecc29fc --- /dev/null +++ b/patchinfo.20260215152452177191.255638743075857/_patchinfo @@ -0,0 +1,45 @@ + + CVE-2026-2319 chromium-browser: Race in DevTools + CVE-2026-2322 chromium-browser: Inappropriate implementation in File input + VUL-0: chromium: release 145.0.7632.45 + CVE-2026-2318 chromium-browser: Inappropriate implementation in PictureInPicture + VUL-0: CVE-2026-2441: chromium: Use after free in CSS (fixed in 145.0.7632.75) + CVE-2026-2316 chromium-browser: Insufficient policy enforcement in Frames + VUL-0: CVE-2026-2441: chromium: Use after free in CSS (fixed in 145.0.7632.75) + CVE-2026-2323 chromium-browser: Inappropriate implementation in Downloads + CVE-2026-2321 chromium-browser: Use after free in Ozone + CVE-2026-2317 chromium-browser: Inappropriate implementation in Animation + VUL-0: chromium: release 145.0.7632.45 + CVE-2026-2315 chromium-browser: Inappropriate implementation in WebGPU + CVE-2026-2320 chromium-browser: Inappropriate implementation in File input + CVE-2026-2314 chromium-browser: Heap buffer overflow in Codecs + AndreasStieger + important + security + Security update for chromium + This update for chromium fixes the following issues: + +Changes in chromium: + +- Chromium 145.0.7632.75: + * CVE-2026-2441: Use after free in CSS (boo#1258185) + +- Chromium 145.0.7632.67: + * Revert a change in url_fixer that may have caused crashes + +- Chromium 145.0.7632.45 (boo#1258116) + * jpeg-xl support has been readded + * CVE-2026-2313: Use after free in CSS + * CVE-2026-2314: Heap buffer overflow in Codecs + * CVE-2026-2315: Inappropriate implementation in WebGPU + * CVE-2026-2316: Insufficient policy enforcement in Frames + * CVE-2026-2317: Inappropriate implementation in Animation + * CVE-2026-2318: Inappropriate implementation in PictureInPicture + * CVE-2026-2319: Race in DevTools + * CVE-2026-2320: Inappropriate implementation in File input + * CVE-2026-2321: Use after free in Ozone + * CVE-2026-2322: Inappropriate implementation in File input + * CVE-2026-2323: Inappropriate implementation in Downloads + + chromium + -- 2.51.1 From 4f5c2817cbfcb37d66bc2f0348014075d597dbf138615c0aecbbbf37751cc79d Mon Sep 17 00:00:00 2001 From: Robert Frohl Date: Mon, 16 Feb 2026 13:55:10 +0100 Subject: [PATCH 2/5] Update patchinfo.20260215152452177191.255638743075857/_patchinfo update for new changes --- .../_patchinfo | 27 ++++++++++--------- 1 file changed, 15 insertions(+), 12 deletions(-) diff --git a/patchinfo.20260215152452177191.255638743075857/_patchinfo b/patchinfo.20260215152452177191.255638743075857/_patchinfo index ecc29fc..8fbb241 100644 --- a/patchinfo.20260215152452177191.255638743075857/_patchinfo +++ b/patchinfo.20260215152452177191.255638743075857/_patchinfo @@ -1,18 +1,19 @@ - CVE-2026-2319 chromium-browser: Race in DevTools - CVE-2026-2322 chromium-browser: Inappropriate implementation in File input - VUL-0: chromium: release 145.0.7632.45 - CVE-2026-2318 chromium-browser: Inappropriate implementation in PictureInPicture - VUL-0: CVE-2026-2441: chromium: Use after free in CSS (fixed in 145.0.7632.75) - CVE-2026-2316 chromium-browser: Insufficient policy enforcement in Frames + + + + + + VUL-0: CVE-2026-2441: chromium: Use after free in CSS (fixed in 145.0.7632.75) - CVE-2026-2323 chromium-browser: Inappropriate implementation in Downloads - CVE-2026-2321 chromium-browser: Use after free in Ozone - CVE-2026-2317 chromium-browser: Inappropriate implementation in Animation + + + VUL-0: chromium: release 145.0.7632.45 - CVE-2026-2315 chromium-browser: Inappropriate implementation in WebGPU - CVE-2026-2320 chromium-browser: Inappropriate implementation in File input - CVE-2026-2314 chromium-browser: Heap buffer overflow in Codecs + + + + chromium desktop icon shows @@MENUNAME AndreasStieger important security @@ -21,6 +22,8 @@ Changes in chromium: +- fix INSTALL.sh again to replace the tags in desktop file, appdata and manpage (boo#1258199) + - Chromium 145.0.7632.75: * CVE-2026-2441: Use after free in CSS (boo#1258185) -- 2.51.1 From c0c577430fc181c8c131a189253fdb88b192e592e433f1bc6f6f79cb93b361b6 Mon Sep 17 00:00:00 2001 From: AutoGits PR Review Bot Date: Mon, 16 Feb 2026 12:55:43 +0000 Subject: [PATCH 3/5] auto-created for chromium This commit was autocreated by AutoGits PR Review Bot referencing PRs: PR: pool/chromium!36 --- chromium | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/chromium b/chromium index 65a7ae5..c2d53b1 160000 --- a/chromium +++ b/chromium @@ -1 +1 @@ -Subproject commit 65a7ae503754819bdcda10d25664598e4680d3459f46649b93b003594c750f82 +Subproject commit c2d53b1a6597b5d697f8e88516cb11a493d4cf214af2528b44a964553fac2ba1 -- 2.51.1 From 51fbb7fd8350380c225e6ea75608597bcb839a987fd4e1ce3f439c5590cf9a46 Mon Sep 17 00:00:00 2001 From: AutoGits PR Review Bot Date: Mon, 16 Feb 2026 17:32:21 +0000 Subject: [PATCH 4/5] auto-created for chromium This commit was autocreated by AutoGits PR Review Bot referencing PRs: PR: pool/chromium!36 --- chromium | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/chromium b/chromium index c2d53b1..b662897 160000 --- a/chromium +++ b/chromium @@ -1 +1 @@ -Subproject commit c2d53b1a6597b5d697f8e88516cb11a493d4cf214af2528b44a964553fac2ba1 +Subproject commit b66289748c870d557636f5b421838740200a306dff834256c267369cb9ab5330 -- 2.51.1 From 3cb1f6fafd9eabcd8f97adbae44103eeb90469e3439c4651540ee237129a929b Mon Sep 17 00:00:00 2001 From: AutoGits PR Review Bot Date: Mon, 16 Feb 2026 20:50:32 +0000 Subject: [PATCH 5/5] auto-created for chromium This commit was autocreated by AutoGits PR Review Bot removing PRs: PR: pool/chromium!36 --- chromium | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/chromium b/chromium index b662897..ff3414e 160000 --- a/chromium +++ b/chromium @@ -1 +1 @@ -Subproject commit b66289748c870d557636f5b421838740200a306dff834256c267369cb9ab5330 +Subproject commit ff3414e963a0c31f77d2972e2e713427db98c2f42f186dbd0c25b5d0ef8664ff -- 2.51.1