Alerts This Week
Warning Icon 1 537
Alerts This Week
Warning Icon 1 537

openSUSE: Chromium Critical Security Update 2025-20003-1 CVE-2025-10890

opensuse
Calendar Grey November 3, 2025
Dist Opensuse Esm H88
This update for openSUSE addresses 17 vulnerabilities in Chromium, ensuring enhanced security with critical fixes and bug resolutions.
An update that solves 17 vulnerabilities and has 3 bug fixes can now be installed.

Description

This update for chromium fixes the following issues:

Chromium 141.0.7390.76:

* Do not send URLs as AIM input. This is to resolve a privacy

concern, around passing urls to AI Mode.

Chromium 141.0.7390.65 (boo#1251334):

* CVE-2025-11458: Heap buffer overflow in Sync

* CVE-2025-11460: Use after free in Storage

* CVE-2025-11211: Out of bounds read in WebCodecs

Chromium 141.0.7390.54 (stable released 2025-09-30) (boo#1250780)

* CVE-2025-11205: Heap buffer overflow in WebGPU

* CVE-2025-11206: Heap buffer overflow in Video

* CVE-2025-11207: Side-channel information leakage in Storage

* CVE-2025-11208: Inappropriate implementation in Media

* CVE-2025-11209: Inappropriate implementation in Omnibox

* CVE-2025-11210: Side-channel information leakage in Tab

* CVE-2025-11211: Out of bounds read in Media

* CVE-2025-11212: Inappropriate implementation in Media

* CVE-2025-11213: Inappropriate implementation in Omnibox

* CVE-2025-11215: Off by one error in V8

*...

Read the Full Advisory

Patch

Package List

- openSUSE Leap 16.0:

chromedriver-141.0.7390.76-bp160.1.1

chromium-141.0.7390.76-bp160.1.1

References

* bsc#1250472

* bsc#1250780

* bsc#1251334

References:

* https://www.suse.com/security/cve/CVE-2025-10890.html

* https://www.suse.com/security/cve/CVE-2025-10891.html

* https://www.suse.com/security/cve/CVE-2025-10892.html

* https://www.suse.com/security/cve/CVE-2025-11205.html

* https://www.suse.com/security/cve/CVE-2025-11206.html

* https://www.suse.com/security/cve/CVE-2025-11207.html

* https://www.suse.com/security/cve/CVE-2025-11208.html

* https://www.suse.com/security/cve/CVE-2025-11209.html

* https://www.suse.com/security/cve/CVE-2025-11210.html

* https://www.suse.com/security/cve/CVE-2025-11211.html

* https://www.suse.com/security/cve/CVE-2025-11212.html

* https://www.suse.com/security/cve/CVE-2025-11213.html

* https://www.suse.com/security/cve/CVE-2025-11215.html

* https://www.suse.com/security/cve/CVE-2025-11216.html

* https://www.suse.com/security/cve/CVE-2025-11219.html

* https://www.suse.com/security/cve/CVE-2025-11458.html

* https://www.suse.com/security/cve/CVE-2025-11460.html

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2025-20003-1
Rating: critical
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here