Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2026:21453-1

Опубликовано: 28 июл. 2026
Источник: suse-cvrf

Описание

Security update for chromium

This update for chromium fixes the following issues:

Changes in chromium:

  • Chromium 150.0.7871.186 (boo#1272460):
    • CVE-2026-16807: Out of bounds write in Codecs
    • CVE-2026-16806: Use after free in WebMCP
    • CVE-2026-16805: Use after free in Blink
    • CVE-2026-16804: Use after free in Input

Список пакетов

openSUSE Leap 16.0
chromedriver-150.0.7871.186-bp160.1.1
chromium-150.0.7871.186-bp160.1.1

Описание

Use after free in Input in Google Chrome prior to 150.0.7871.186 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
openSUSE Leap 16.0:chromedriver-150.0.7871.186-bp160.1.1
openSUSE Leap 16.0:chromium-150.0.7871.186-bp160.1.1

Ссылки

Описание

Use after free in Blink in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
openSUSE Leap 16.0:chromedriver-150.0.7871.186-bp160.1.1
openSUSE Leap 16.0:chromium-150.0.7871.186-bp160.1.1

Ссылки

Описание

Use after free in WebMCP in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
openSUSE Leap 16.0:chromedriver-150.0.7871.186-bp160.1.1
openSUSE Leap 16.0:chromium-150.0.7871.186-bp160.1.1

Ссылки

Описание

Out of bounds write in Codecs in Google Chrome prior to 150.0.7871.186 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)


Затронутые продукты
openSUSE Leap 16.0:chromedriver-150.0.7871.186-bp160.1.1
openSUSE Leap 16.0:chromium-150.0.7871.186-bp160.1.1

Ссылки