Bug 1173029 - (CVE-2020-6505) VUL-0: chromium: CVE-2020-6505,CVE-2020-6506,CVE-2020-6507: Update to 83.0.4103.106
(CVE-2020-6505)
VUL-0: chromium: CVE-2020-6505,CVE-2020-6506,CVE-2020-6507: Update to 83.0.41...
Status: RESOLVED FIXED
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Security
Leap 15.1
Other Other
: P3 - Medium : Major (vote)
: Leap 15.1
Assigned To: Security Team bot
E-mail List
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2020-06-17 08:14 UTC by Alexandros Toptsoglou
Modified: 2021-12-15 09:40 UTC (History)
2 users (show)

See Also:
Found By: ---
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexandros Toptsoglou 2020-06-17 08:14:36 UTC
High CVE-2020-6505: Use after free in speech
High CVE-2020-6506: Insufficient policy enforcement in WebView
High CVE-2020-6507: Out of bounds write in V8
Various fixes from internal audits, fuzzing and other initiative.

Reference 

https://chromereleases.googleblog.com/
Comment 1 Tomáš Chvátal 2020-06-17 09:10:54 UTC
Submitted to TW and 15.1:Update.
Comment 2 Marcus Meissner 2020-06-17 09:31:50 UTC
We will try to release the current chromium first I would suggest.
Comment 3 OBSbugzilla Bot 2020-06-17 10:00:17 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/815423 Factory / chromium
https://build.opensuse.org/request/show/815429 15.2 / chromium
https://build.opensuse.org/request/show/815430 15.1 / chromium
Comment 4 OBSbugzilla Bot 2020-06-18 08:40:19 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/815677 Factory / chromium
https://build.opensuse.org/request/show/815678 15.1 / chromium
Comment 5 OBSbugzilla Bot 2020-06-19 08:20:08 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/815886 Factory / chromium
Comment 6 Swamp Workflow Management 2020-06-22 22:15:11 UTC
openSUSE-SU-2020:0845-1: An update that fixes three vulnerabilities is now available.

Category: security (important)
Bug References: 1173029,1173063
CVE References: CVE-2020-6505,CVE-2020-6506,CVE-2020-6507
Sources used:
openSUSE Leap 15.1 (src):    chromium-83.0.4103.106-lp151.2.101.1
Comment 7 OBSbugzilla Bot 2020-06-23 09:20:06 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/816521 Factory / chromium
https://build.opensuse.org/request/show/816528 Factory / chromium
Comment 8 OBSbugzilla Bot 2020-06-23 17:30:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/816630 Factory / chromium
Comment 9 OBSbugzilla Bot 2020-06-24 08:40:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/816797 Factory / chromium
Comment 10 Swamp Workflow Management 2020-06-24 13:17:19 UTC
openSUSE-SU-2020:0856-1: An update that fixes three vulnerabilities is now available.

Category: security (important)
Bug References: 1173029,1173063
CVE References: CVE-2020-6505,CVE-2020-6506,CVE-2020-6507
Sources used:
openSUSE Backports SLE-15-SP1 (src):    chromium-83.0.4103.106-bp151.3.88.1
Comment 11 OBSbugzilla Bot 2020-06-25 08:00:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/816970 Factory / chromium
Comment 12 OBSbugzilla Bot 2020-06-26 09:30:07 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/817211 15.2 / chromium
Comment 13 Swamp Workflow Management 2020-06-28 16:12:33 UTC
openSUSE-SU-2020:0893-1: An update that solves four vulnerabilities and has four fixes is now available.

Category: security (important)
Bug References: 1173029,1173063,1173107,1173187,1173188,1173251,1173254,1173292
CVE References: CVE-2020-6505,CVE-2020-6506,CVE-2020-6507,CVE-2020-6509
Sources used:
openSUSE Leap 15.2 (src):    chromium-83.0.4103.116-lp152.2.3.1
Comment 14 Alexandros Toptsoglou 2020-07-03 11:42:34 UTC
Done
Comment 15 OBSbugzilla Bot 2021-12-15 09:40:17 UTC
This is an autogenerated message for OBS integration:
This bug (1173029) was mentioned in
https://build.opensuse.org/request/show/940663 Backports:SLE-12-SP3 / chromium