Описание
Security update for chromium
This update for chromium fixes the following issues:
Changes in chromium:
- Chromium 145.0.7632.109 (boo#1258438):
- CVE-2026-2648: Heap buffer overflow in PDFium
- CVE-2026-2649: Integer overflow in V8
- CVE-2026-2650: Heap buffer overflow in Media
Список пакетов
openSUSE Leap 16.0
chromedriver-145.0.7632.109-bp160.1.1
chromium-145.0.7632.109-bp160.1.1
Ссылки
- SUSE Security Ratings
- SUSE Bug 1258438
- SUSE CVE CVE-2026-2648 page
- SUSE CVE CVE-2026-2649 page
- SUSE CVE CVE-2026-2650 page
Описание
Heap buffer overflow in PDFium in Google Chrome prior to 145.0.7632.109 allowed a remote attacker to perform an out of bounds memory write via a crafted PDF file. (Chromium security severity: High)
Затронутые продукты
openSUSE Leap 16.0:chromedriver-145.0.7632.109-bp160.1.1
openSUSE Leap 16.0:chromium-145.0.7632.109-bp160.1.1
Ссылки
- CVE-2026-2648
- SUSE Bug 1258438
Описание
Integer overflow in V8 in Google Chrome prior to 145.0.7632.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
Затронутые продукты
openSUSE Leap 16.0:chromedriver-145.0.7632.109-bp160.1.1
openSUSE Leap 16.0:chromium-145.0.7632.109-bp160.1.1
Ссылки
- CVE-2026-2649
- SUSE Bug 1258438
Описание
Heap buffer overflow in Media in Google Chrome prior to 145.0.7632.109 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)
Затронутые продукты
openSUSE Leap 16.0:chromedriver-145.0.7632.109-bp160.1.1
openSUSE Leap 16.0:chromium-145.0.7632.109-bp160.1.1
Ссылки
- CVE-2026-2650
- SUSE Bug 1258438