Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2021:1209-1

Опубликовано: 29 авг. 2021
Источник: suse-cvrf

Описание

Security update for opera

This update for opera fixes the following issues:

opera was updated to version 78.0.4093.147

  • CHR-8251 Update chromium on desktop-stable-92-4093 to 92.0.4515.131
  • DNA-93036 Opera not starting after closing window. Processes still working.
  • DNA-94516 Add ‘Detach tab’ entry to tab menu
  • DNA-94584 [Mac] Sidebar setup not closed after press ‘Add extensions’ button
  • DNA-94761 Crash when trying to record “Chrome developer” trace
  • DNA-94790 Crash at opera::VideoConferenceTabDetachController:: OnBrowserAboutToStartClosing(Browser*)
  • The update to chromium 92.0.4515.131 fixes following issues: CVE-2021-30590, CVE-2021-30591, CVE-2021-30592, CVE-2021-30593, CVE-2021-30594, CVE-2021-30596, CVE-2021-30597

Update to version 78.0.4093.112

  • DNA-94466 Implement sorting Pinboards in overview
  • DNA-94582 Add access to APIs for showing pinboard icon in sidebar
  • DNA-94603 Suspicious pinboards events
  • DNA-94625 Disable opr.pinboardPrivate.getThumbnail() for local files
  • DNA-94640 Promote O78 to stable
  • DNA-94661 Missing translations for some languages
  • Complete Opera 78.0 changelog at: https://blogs.opera.com/desktop/changelog-for-78/

Список пакетов

openSUSE Leap 15.2 NonFree
opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree
opera-78.0.4093.147-lp153.2.12.1

Описание

Heap buffer overflow in Bookmarks in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Use after free in File System API in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Out of bounds write in Tab Groups in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory write via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Out of bounds read in Tab Strip in Google Chrome prior to 92.0.4515.131 allowed an attacker who convinced a user to install a malicious extension to perform an out of bounds memory read via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Use after free in Page Info UI in Google Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Incorrect security UI in Navigation in Google Chrome on Android prior to 92.0.4515.131 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки

Описание

Use after free in Browser UI in Google Chrome on Chrome prior to 92.0.4515.131 allowed a remote attacker to potentially exploit heap corruption via physical access to the device.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.147-lp153.2.12.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.147-lp153.2.12.1

Ссылки