Описание
Security update for chromium
This update for chromium fixes the following issues:
Changes in chromium:
- Chromium 151.0.7922.137 (boo#1274759):
- CVE-2026-19556: Use after free in V8
- CVE-2026-19557: Use after free in TabStrip
- CVE-2026-19558: Use after free in Extensions
- CVE-2026-19559: Use after free in HTML
- CVE-2026-19560: Use after free in Blink
Список пакетов
openSUSE Leap 16.0
Ссылки
- SUSE Security Ratings
- SUSE Bug 1274759
- SUSE CVE CVE-2026-19556 page
- SUSE CVE CVE-2026-19557 page
- SUSE CVE CVE-2026-19558 page
- SUSE CVE CVE-2026-19559 page
- SUSE CVE CVE-2026-19560 page
Описание
Use after free in V8 in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Затронутые продукты
Ссылки
- CVE-2026-19556
- SUSE Bug 1274759
Описание
Use after free in TabStrip in Google Chrome on Mac prior to 151.0.7922.137 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)
Затронутые продукты
Ссылки
- CVE-2026-19557
- SUSE Bug 1274759
Описание
Use after free in Extensions in Google Chrome prior to 151.0.7922.137 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code inside a sandbox via a crafted Chrome Extension. (Chromium security severity: High)
Затронутые продукты
Ссылки
- CVE-2026-19558
- SUSE Bug 1274759
Описание
Use after free in HTML in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Затронутые продукты
Ссылки
- CVE-2026-19559
- SUSE Bug 1274759
Описание
Use after free in Blink in Google Chrome prior to 151.0.7922.137 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)
Затронутые продукты
Ссылки
- CVE-2026-19560
- SUSE Bug 1274759