Alerts This Week
Warning Icon 1 727
Alerts This Week
Warning Icon 1 727

openSUSE 15.2: openSUSE-SU-2021:0825-1 Important: Chromium Patch

opensuse
Calendar Grey June 2, 2021
Dist Opensuse Esm H88
This patch for Ubuntu addresses 19 serious vulnerabilities in firefox, improving general internet safety and performance.
An update that fixes 21 vulnerabilities is now available

Description

This update for chromium fixes the following issues:

Chromium 91.0.4472.77 (boo#1186458):

* Support Managed configuration API for Web Applications

* WebOTP API: cross-origin iframe support

* CSS custom counter styles

* Support JSON Modules

* Clipboard: read-only files support

* Remove webkitBeforeTextInserted & webkitEditableCOntentChanged JS events

* Honor media HTML attribute for link icon

* Import Assertions

* Class static initializer blocks

* Ergonomic brand checks for private fields

* Expose WebAssembly SIMD

* New Feature: WebTransport

* ES Modules for service workers ('module' type option)

* Suggested file name and location for the File System Access API

* adaptivePTime property for RTCRtpEncodingParameters * Block HTTP port 10080 - mitigation for NAT Slipstream 2.0 attack

* Support WebSockets over HTTP/2

* Support 103 Early Hints for Navigation

* CVE-2021-30521: Heap buffer overflow in Autofill

*...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Leap 15.2:

zypper in -t patch openSUSE-2021-825=1

Package List

- openSUSE Leap 15.2 (x86_64):

chromedriver-91.0.4472.77-lp152.2.98.1

chromedriver-debuginfo-91.0.4472.77-lp152.2.98.1

chromium-91.0.4472.77-lp152.2.98.1

chromium-debuginfo-91.0.4472.77-lp152.2.98.1

References

https://www.suse.com/security/cve/CVE-2021-21212.html

https://www.suse.com/security/cve/CVE-2021-30521.html

https://www.suse.com/security/cve/CVE-2021-30522.html

https://www.suse.com/security/cve/CVE-2021-30523.html

https://www.suse.com/security/cve/CVE-2021-30524.html

https://www.suse.com/security/cve/CVE-2021-30525.html

https://www.suse.com/security/cve/CVE-2021-30526.html

https://www.suse.com/security/cve/CVE-2021-30527.html

https://www.suse.com/security/cve/CVE-2021-30528.html

https://www.suse.com/security/cve/CVE-2021-30529.html

https://www.suse.com/security/cve/CVE-2021-30530.html

https://www.suse.com/security/cve/CVE-2021-30531.html

https://www.suse.com/security/cve/CVE-2021-30532.html

https://www.suse.com/security/cve/CVE-2021-30533.html

https://www.suse.com/security/cve/CVE-2021-30534.html

https://www.suse.com/security/cve/CVE-2021-30535.html

https://www.suse.com/security/cve/CVE-2021-30536.html

https://www.suse.com/security/cve/CVE-2021-30537.html

https://www.suse.com/security/cve/CVE-2021-305...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:0825-1
Rating: important
Affected Products: openSUSE Leap 15.2 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Your message here