Bug 1197163 - VUL-0: chromium: multiple security issues fixed in 99.0.4844.74
VUL-0: chromium: multiple security issues fixed in 99.0.4844.74
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Security
Leap 15.4
Other Other
: P3 - Medium : Normal (vote)
: ---
Assigned To: Security Team bot
E-mail List
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2022-03-16 08:14 UTC by Gabriele Sonnu
Modified: 2022-04-05 09:30 UTC (History)
3 users (show)

See Also:
Found By: ---
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Gabriele Sonnu 2022-03-16 08:14:00 UTC
This update includes 11 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Page for more information.

[$NA][1299422] Critical CVE-2022-0971: Use after free in Blink Layout. 
Reported by Sergei Glazunov of Google Project Zero on 2022-02-21

[$NA][1301320] High CVE-2022-0972: Use after free in Extensions. 
Reported by Sergei Glazunov of Google Project Zero on 2022-02-28

[$15000][1297498] High CVE-2022-0973: Use after free in Safe Browsing.
Reported by avaue and Buff3tts at S.S.L. on 2022-02-15

[$7000][1291986] High CVE-2022-0974 : Use after free in Splitscreen.
Reported by @ginggilBesel on 2022-01-28

[$7000][1295411] High CVE-2022-0975: Use after free in ANGLE.
Reported by SeongHwan Park (SeHwa) on 2022-02-09

[$7000][1296866] High CVE-2022-0976: Heap buffer overflow in GPU.
Reported by Omair on 2022-02-13

[$3000][1299225] High CVE-2022-0977: Use after free in Browser UI.
Reported by Khalil Zhani on 2022-02-20

[$TBD][1299264] High CVE-2022-0978: Use after free in ANGLE.
Reported by Cassidy Kim of Amber Security Lab, OPPO Mobile Telecommunications Corp. Ltd. on 2022-02-20

[$TBD][1302644] High CVE-2022-0979: Use after free in Safe Browsing.
Reported by anonymous on 2022-03-03

[$TBD][1302157] Medium CVE-2022-0980: Use after free in New Tab Page.
Reported by Krace on 2022-03-02

We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel.
As usual, our ongoing internal security work was responsible for a wide range of fixes:

[1305655] Various fixes from internal audits, fuzzing and other initiatives
Comment 1 OBSbugzilla Bot 2022-03-16 12:00:10 UTC
This is an autogenerated message for OBS integration:
This bug (1197163) was mentioned in
https://build.opensuse.org/request/show/962131 Factory / chromium
https://build.opensuse.org/request/show/962134 Backports:SLE-15-SP4 / chromium
https://build.opensuse.org/request/show/962137 Backports:SLE-15-SP3 / chromium
Comment 2 Swamp Workflow Management 2022-03-20 17:16:10 UTC
openSUSE-SU-2022:0085-1: An update that fixes 10 vulnerabilities is now available.

Category: security (important)
Bug References: 1197163
CVE References: CVE-2022-0971,CVE-2022-0972,CVE-2022-0973,CVE-2022-0974,CVE-2022-0975,CVE-2022-0976,CVE-2022-0977,CVE-2022-0978,CVE-2022-0979,CVE-2022-0980
JIRA References: 
Sources used:
openSUSE Backports SLE-15-SP3 (src):    chromium-99.0.4844.74-bp153.2.69.1
Comment 3 Andreas Stieger 2022-03-20 18:22:34 UTC
done
Comment 4 OBSbugzilla Bot 2022-04-04 20:40:03 UTC
This is an autogenerated message for OBS integration:
This bug (1197163) was mentioned in
https://build.opensuse.org/request/show/966883 Factory / libqt5-qtwebengine
https://build.opensuse.org/request/show/966884 Backports:SLE-15-SP4 / libqt5-qtwebengine
Comment 5 OBSbugzilla Bot 2022-04-05 07:30:03 UTC
This is an autogenerated message for OBS integration:
This bug (1197163) was mentioned in
https://build.opensuse.org/request/show/966926 Backports:SLE-15-SP4 / qt6-webengine
Comment 6 OBSbugzilla Bot 2022-04-05 09:30:03 UTC
This is an autogenerated message for OBS integration:
This bug (1197163) was mentioned in
https://build.opensuse.org/request/show/966962 Factory / qt6-webengine