Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog
Консоль
Π›ΠΎΠ³ΠΎΡ‚ΠΈΠΏ exploitDog

exploitDog

suse-cvrf Π»ΠΎΠ³ΠΎΡ‚ΠΈΠΏ

openSUSE-SU-2022:10049-1

ΠžΠΏΡƒΠ±Π»ΠΈΠΊΠΎΠ²Π°Π½ΠΎ: 10 июл. 2022
Π˜ΡΡ‚ΠΎΡ‡Π½ΠΈΠΊ: suse-cvrf

ОписаниС

Security update for libqt5-qtwebengine

This update for libqt5-qtwebengine fixes the following issues:

Update to version 5.15.10:

  • Fix top level build with no widget

  • Fix read-after-free on EGL extensions

  • Update Chromium

  • Add workaround for unstable gn on macOS in ci

  • Pass archiver to gn build

  • Fix navigation to non-local URLs

  • Add support for universal builds for qtwebengine and qtpdf

  • Enable Apple Silicon support

  • Fix cross compilation x86_64->arm64 on mac

  • Bump version to 5.15.10

  • CustomDialogs: Make custom input fields readable in dark mode

  • CookieBrowser: Make alternating rows readable in dark mode

  • Update Chromium:

    • Bump V8_PATCH_LEVEL
    • Fix clang set-but-unused-variable warning
    • Fix mac toolchain python linker script call
    • Fix missing dependency for gpu sources
    • Fix python calls
    • Fix undefined symbol for universal link
    • Quick fix for regression in service workers by reverting backports
    • [Backport] CVE-2022-0797: Out of bounds memory access in Mojo
    • [Backport] CVE-2022-1125
    • [Backport] CVE-2022-1138: Inappropriate implementation in Web Cursor.
    • [Backport] CVE-2022-1305: Use after free in storage
    • [Backport] CVE-2022-1310: Use after free in regular expressions
    • [Backport] CVE-2022-1314: Type Confusion in V8
    • [Backport] CVE-2022-1493: Use after free in Dev Tools
    • [Backport] On arm64 hosts, set host_cpu to 'arm64', not 'arm'
    • [Backport] Security Bug 1296876
    • [Backport] Security bug 1269999
    • [Backport] Security bug 1280852
    • [Backport] Security bug 1292905
    • [Backport] Security bug 1304659
    • [Backport] Security bug 1306507

Бписок ΠΏΠ°ΠΊΠ΅Ρ‚ΠΎΠ²

SUSE Package Hub 15 SP4
libQt5Pdf5-5.15.10-bp154.2.3.2
libQt5PdfWidgets5-5.15.10-bp154.2.3.2
libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
libqt5-qtpdf-examples-5.15.10-bp154.2.3.2
libqt5-qtpdf-imports-5.15.10-bp154.2.3.2
libqt5-qtpdf-private-headers-devel-5.15.10-bp154.2.3.2
libqt5-qtwebengine-5.15.10-bp154.2.3.2
libqt5-qtwebengine-devel-5.15.10-bp154.2.3.2
libqt5-qtwebengine-examples-5.15.10-bp154.2.3.2
libqt5-qtwebengine-private-headers-devel-5.15.10-bp154.2.3.2
openSUSE Leap 15.4
libQt5Pdf5-5.15.10-bp154.2.3.2
libQt5PdfWidgets5-5.15.10-bp154.2.3.2
libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
libqt5-qtpdf-examples-5.15.10-bp154.2.3.2
libqt5-qtpdf-imports-5.15.10-bp154.2.3.2
libqt5-qtpdf-private-headers-devel-5.15.10-bp154.2.3.2
libqt5-qtwebengine-5.15.10-bp154.2.3.2
libqt5-qtwebengine-devel-5.15.10-bp154.2.3.2
libqt5-qtwebengine-examples-5.15.10-bp154.2.3.2
libqt5-qtwebengine-private-headers-devel-5.15.10-bp154.2.3.2

ОписаниС

Out of bounds memory access in Mojo in Google Chrome prior to 99.0.4844.51 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Use after free in Portals in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who convinced a user to engage in specific user interaction to potentially exploit heap corruption via user interaction.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Inappropriate implementation in Web Cursor in Google Chrome prior to 100.0.4896.60 allowed a remote attacker who had compromised the renderer process to obscure the contents of the Omnibox (URL bar) via a crafted HTML page.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Use after free in storage in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Use after free in regular expressions in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Type confusion in V8 in Google Chrome prior to 100.0.4896.88 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки

ОписаниС

Use after free in Dev Tools in Google Chrome prior to 101.0.4951.41 allowed a remote attacker to potentially exploit heap corruption via specific and direct user interaction.


Π—Π°Ρ‚Ρ€ΠΎΠ½ΡƒΡ‚Ρ‹Π΅ ΠΏΡ€ΠΎΠ΄ΡƒΠΊΡ‚Ρ‹
SUSE Package Hub 15 SP4:libQt5Pdf5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libQt5PdfWidgets5-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-devel-5.15.10-bp154.2.3.2
SUSE Package Hub 15 SP4:libqt5-qtpdf-examples-5.15.10-bp154.2.3.2

Бсылки
Π£ΡΠ·Π²ΠΈΠΌΠΎΡΡ‚ΡŒ openSUSE-SU-2022:10049-1