Alerts This Week
Warning Icon 1 681
Alerts This Week
Warning Icon 1 681

openSUSE: 2021:0840-1 Crucial Security Update for Chromium Browser

opensuse
Calendar Grey June 4, 2021
Dist Opensuse Esm H88
Latest patch for chromium resolves 21 vulnerabilities in openSUSE. Key advisory information shared for system administrators.
An update that fixes 21 vulnerabilities is now available

Description

This update for chromium fixes the following issues:

Chromium 91.0.4472.77 (boo#1186458):

* Support Managed configuration API for Web Applications

* WebOTP API: cross-origin iframe support

* CSS custom counter styles

* Support JSON Modules

* Clipboard: read-only files support

* Remove webkitBeforeTextInserted & webkitEditableCOntentChanged JS events

* Honor media HTML attribute for link icon

* Import Assertions

* Class static initializer blocks

* Ergonomic brand checks for private fields

* Expose WebAssembly SIMD

* New Feature: WebTransport

* ES Modules for service workers ('module' type option)

* Suggested file name and location for the File System Access API

* adaptivePTime property for RTCRtpEncodingParameters * Block HTTP port 10080 - mitigation for NAT Slipstream 2.0 attack

* Support WebSockets over HTTP/2

* Support 103 Early Hints for Navigation

* CVE-2021-30521: Heap buffer overflow in Autofill

*...

Read the Full Advisory

Patch

Patch Instructions:

To install this openSUSE Security Update use the SUSE recommended installation methods

like YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

- openSUSE Backports SLE-15-SP3:

zypper in -t patch openSUSE-2021-840=1

Package List

- openSUSE Backports SLE-15-SP3 (x86_64):

chromedriver-91.0.4472.77-bp153.2.3.1

chromium-91.0.4472.77-bp153.2.3.1

References

https://www.suse.com/security/cve/CVE-2021-21212.html

https://www.suse.com/security/cve/CVE-2021-30521.html

https://www.suse.com/security/cve/CVE-2021-30522.html

https://www.suse.com/security/cve/CVE-2021-30523.html

https://www.suse.com/security/cve/CVE-2021-30524.html

https://www.suse.com/security/cve/CVE-2021-30525.html

https://www.suse.com/security/cve/CVE-2021-30526.html

https://www.suse.com/security/cve/CVE-2021-30527.html

https://www.suse.com/security/cve/CVE-2021-30528.html

https://www.suse.com/security/cve/CVE-2021-30529.html

https://www.suse.com/security/cve/CVE-2021-30530.html

https://www.suse.com/security/cve/CVE-2021-30531.html

https://www.suse.com/security/cve/CVE-2021-30532.html

https://www.suse.com/security/cve/CVE-2021-30533.html

https://www.suse.com/security/cve/CVE-2021-30534.html

https://www.suse.com/security/cve/CVE-2021-30535.html

https://www.suse.com/security/cve/CVE-2021-30536.html

https://www.suse.com/security/cve/CVE-2021-30537.html

https://www.suse.com/security/cve/CVE-2021-305...

Read the Full Advisory

Severity
important
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2021:0840-1
Rating: important
Affected Products: openSUSE Backports SLE-15-SP3 .

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here