Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

openSUSE Leap 16.0: Chromium Critical Update for 17 Flaws 2025-20020-1

opensuse
Calendar Grey November 11, 2025
Dist Opensuse Esm H88
Critical update for openSUSE Leap 16.0 addressing 17 issues in Chromium with several bug fixes.
An update that solves 17 vulnerabilities and has 3 bug fixes can now be installed.

Description

This update for chromium fixes the following issues:

Chromium 141.0.7390.76:

* Do not send URLs as AIM input. This is to resolve a privacy

concern, around passing urls to AI Mode.

Chromium 141.0.7390.65 (boo#1251334):

* CVE-2025-11458: Heap buffer overflow in Sync

* CVE-2025-11460: Use after free in Storage

* CVE-2025-11211: Out of bounds read in WebCodecs

Chromium 141.0.7390.54 (stable released 2025-09-30) (boo#1250780)

* CVE-2025-11205: Heap buffer overflow in WebGPU

* CVE-2025-11206: Heap buffer overflow in Video

* CVE-2025-11207: Side-channel information leakage in Storage

* CVE-2025-11208: Inappropriate implementation in Media

* CVE-2025-11209: Inappropriate implementation in Omnibox

* CVE-2025-11210: Side-channel information leakage in Tab

* CVE-2025-11211: Out of bounds read in Media

* CVE-2025-11212: Inappropriate implementation in Media

* CVE-2025-11213: Inappropriate implementation in Omnibox

* CVE-2025-11215: Off by one error in V8

*...

Read the Full Advisory

Patch

Package List

- openSUSE Leap 16.0:

chromedriver-141.0.7390.76-bp160.1.1

chromium-141.0.7390.76-bp160.1.1

References

* bsc#1250472

* bsc#1250780

* bsc#1251334

References:

* https://www.suse.com/security/cve/CVE-2025-10890.html

* https://www.suse.com/security/cve/CVE-2025-10891.html

* https://www.suse.com/security/cve/CVE-2025-10892.html

* https://www.suse.com/security/cve/CVE-2025-11205.html

* https://www.suse.com/security/cve/CVE-2025-11206.html

* https://www.suse.com/security/cve/CVE-2025-11207.html

* https://www.suse.com/security/cve/CVE-2025-11208.html

* https://www.suse.com/security/cve/CVE-2025-11209.html

* https://www.suse.com/security/cve/CVE-2025-11210.html

* https://www.suse.com/security/cve/CVE-2025-11211.html

* https://www.suse.com/security/cve/CVE-2025-11212.html

* https://www.suse.com/security/cve/CVE-2025-11213.html

* https://www.suse.com/security/cve/CVE-2025-11215.html

* https://www.suse.com/security/cve/CVE-2025-11216.html

* https://www.suse.com/security/cve/CVE-2025-11219.html

* https://www.suse.com/security/cve/CVE-2025-11458.html

* https://www.suse.com/security/cve/CVE-2025-11460.html

Severity
critical
Lowest
Low
Medium
High
Critical

Announcement ID: openSUSE-SU-2025-20020-1
Rating: critical
Affected Products: openSUSE Leap 16.0 -------------------------------------------------------------

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here