Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2021:1221-1

Опубликовано: 03 сент. 2021
Источник: suse-cvrf

Описание

Security update for opera

This update for opera fixes the following issues:

opera was updated to version 78.0.4093.184

  • CHR-8533 Update chromium on desktop-stable-92-4093 to 92.0.4515.159
  • DNA-93472 Reattaching to other browsers
  • DNA-93741 Multiple hint slots
  • DNA-93742 Allow displaying unobtrusive external hints
  • DNA-93744 Add slots in toolbar action view
  • DNA-94230 Improve text contrast for Speed Dials
  • DNA-94724 [Mac] Add macOS dark theme wallpaper with easy setup
  • DNA-94786 Crash at base::SupportsUserData:: SetUserData(void const*, std::__1::unique_ptr)
  • DNA-94807 Allow scripts access opera version and product info
  • DNA-94862 Continue on shopping Amazon doesn’t work correct
  • DNA-94870 Add an addonsPrivate function to install with permissions dialog first
  • DNA-95064 Revert DNA-93714 on stable
  • The update to chromium 92.0.4515.159 fixes following issues: CVE-2021-30598, CVE-2021-30599, CVE-2021-30600, CVE-2021-30601, CVE-2021-30602, CVE-2021-30603, CVE-2021-30604

Список пакетов

openSUSE Leap 15.2 NonFree
opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree
opera-78.0.4093.184-lp153.2.15.1

Описание

Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Type confusion in V8 in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Use after free in Printing in Google Chrome prior to 92.0.4515.159 allowed a remote attacker who had compromised the renderer process to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Use after free in Extensions API in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Use after free in WebRTC in Google Chrome prior to 92.0.4515.159 allowed an attacker who convinced a user to visit a malicious website to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Data race in WebAudio in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки

Описание

Use after free in ANGLE in Google Chrome prior to 92.0.4515.159 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Затронутые продукты
openSUSE Leap 15.2 NonFree:opera-78.0.4093.184-lp153.2.15.1
openSUSE Leap 15.3 NonFree:opera-78.0.4093.184-lp153.2.15.1

Ссылки