File chromium-ffmpeg-extra.changes of Package chromium-ffmpeg-extra (Revision 22)

Currently displaying revision 22 , Show latest

758
 
1
-------------------------------------------------------------------
2
Thu Jul 14 16:38:50 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
3
4
- Rebase chromium 103.0.5060.114 for use as chromium-ffmpeg-extra
5
  - Fixes problems with audio and youtube video playback
6
7
-------------------------------------------------------------------
8
Sat Jul  9 12:52:33 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
9
10
- Chromium 103.0.5060.114 (boo#1201216)
11
  * CVE-2022-2294: Heap buffer overflow in WebRTC
12
  * CVE-2022-2295: Type Confusion in V8
13
  * CVE-2022-2296: Use after free in Chrome OS Shell
14
15
-------------------------------------------------------------------
16
Thu Jul  7 18:07:43 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
17
18
- Chromium 103.0.5060.66
19
  * no upstream release notes
20
21
-------------------------------------------------------------------
22
Sat Jun 25 10:43:48 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
23
24
- Chromium 103.0.5060.53 (boo#1200783)
25
  * CVE-2022-2156: Use after free in Base
26
  * CVE-2022-2157: Use after free in Interest groups
27
  * CVE-2022-2158: Type Confusion in V8
28
  * CVE-2022-2160: Insufficient policy enforcement in DevTools
29
  * CVE-2022-2161: Use after free in WebApp Provider
30
  * CVE-2022-2162: Insufficient policy enforcement in File System API
31
  * CVE-2022-2163: Use after free in Cast UI and Toolbar
32
  * CVE-2022-2164: Inappropriate implementation in Extensions API
33
  * CVE-2022-2165: Insufficient data validation in URL formatting
34
- Added patches:
35
  * chromium-103-FrameLoadRequest-type.patch
36
  * chromium-103-SubstringSetMatcher-packed.patch
37
  * chromium-103-VirtualCursor-std-layout.patch
38
  * chromium-103-compiler.patch
39
- Removed patches:
40
  * chromium-102-compiler.patch
41
  * chromium-91-sql-standard-layout-type.patch
42
  * chromium-101-libxml-unbundle.patch
43
  * chromium-102-fenced_frame_utils-include.patch
44
  * chromium-102-swiftshader-template-instantiation.patch
45
  * chromium-102-symbolize-include.patch
46
  * chromium-97-arm-tflite-cast.patch
47
  * chromium-97-ScrollView-reference.patch
48
49
-------------------------------------------------------------------
50
Fri Jun 10 15:35:20 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
51
52
- Chromium 102.0.5005.115 (boo#1200423)
53
  * CVE-2022-2007: Use after free in WebGPU
54
  * CVE-2022-2008: Out of bounds memory access in WebGL
55
  * CVE-2022-2010: Out of bounds read in compositing
56
  * CVE-2022-2011: Use after free in ANGLE
57
58
-------------------------------------------------------------------
59
Wed Jun  8 13:40:43 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
60
61
- Switch to GTK4 on TW and Leap 15.4+ (boo#1200139)
62
63
-------------------------------------------------------------------
64
Wed Jun  1 09:43:54 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
65
66
- Disable ARM control flow integrity, it causes build issues
67
  at the moment
68
- Try a different SVG (black logo on GNOME)
69
- Removed patches:
70
  * chromium-third_party-symbolize-missing-include.patch
71
  (replaced by chromium-102-symbolize-include.patch)
72
73
-------------------------------------------------------------------
74
Fri May 27 19:40:42 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
75
76
- Chromium 102.0.5001.61 (boo#1199893)
77
  * CVE-2022-1853: Use after free in Indexed DB
78
  * CVE-2022-1854: Use after free in ANGLE
79
  * CVE-2022-1855: Use after free in Messaging
80
  * CVE-2022-1856: Use after free in User Education
81
  * CVE-2022-1857: Insufficient policy enforcement in File System API
82
  * CVE-2022-1858: Out of bounds read in DevTools
83
  * CVE-2022-1859: Use after free in Performance Manager
84
  * CVE-2022-1860: Use after free in UI Foundations
85
  * CVE-2022-1861: Use after free in Sharing
86
  * CVE-2022-1862: Inappropriate implementation in Extensions
87
  * CVE-2022-1863: Use after free in Tab Groups
88
  * CVE-2022-1864: Use after free in WebApp Installs
89
  * CVE-2022-1865: Use after free in Bookmarks
90
  * CVE-2022-1866: Use after free in Tablet Mode
91
  * CVE-2022-1867: Insufficient validation of untrusted input in Data Transfer
92
  * CVE-2022-1868: Inappropriate implementation in Extensions API
93
  * CVE-2022-1869: Type Confusion in V8
94
  * CVE-2022-1870: Use after free in App Service
95
  * CVE-2022-1871: Insufficient policy enforcement in File System API
96
  * CVE-2022-1872: Insufficient policy enforcement in Extensions API
97
  * CVE-2022-1873: Insufficient policy enforcement in COOP
98
  * CVE-2022-1874: Insufficient policy enforcement in Safe Browsing
99
  * CVE-2022-1875: Inappropriate implementation in PDF
100
  * CVE-2022-1876: Heap buffer overflow in DevTools
101
- Added patches:
102
  * chromium-102-compiler.patch
103
  * chromium-102-fenced_frame_utils-include.patch
104
  * chromium-102-regex_pattern-array.patch
105
  * chromium-102-swiftshader-template-instantiation.patch
106
  * chromium-102-symbolize-include.patch
107
  * ffmpeg-new-channel-layout.patch
108
- Removed patches:
109
  * chromium-100-compiler.patch
110
  * chromium-80-QuicStreamSendBuffer-deleted-move-constructor.patch
111
  * chromium-95-quiche-include.patch
112
  * chromium-fix-swiftshader-template.patch
113
  * chromium-missing-include-tuple.patch
114
  * chromium-webrtc-stats-missing-vector.patch
115
  * chromium-101-segmentation_platform-type.patch
116
117
-------------------------------------------------------------------
118
Sun May 15 09:03:28 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
119
120
- Chromium 101.0.4951.67
121
  * fixes for other platforms
122
123
-------------------------------------------------------------------
124
Wed May 11 06:33:01 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
125
126
- Chromium 101.0.4951.64 (boo#1199409)
127
  * CVE-2022-1633: Use after free in Sharesheet
128
  * CVE-2022-1634: Use after free in Browser UI
129
  * CVE-2022-1635: Use after free in Permission Prompts
130
  * CVE-2022-1636: Use after free in Performance APIs
131
  * CVE-2022-1637: Inappropriate implementation in Web Contents
132
  * CVE-2022-1638: Heap buffer overflow in V8 Internationalization
133
  * CVE-2022-1639: Use after free in ANGLE
134
  * CVE-2022-1640: Use after free in Sharing
135
  * CVE-2022-1641: Use after free in Web UI Diagnostics
136
137
-------------------------------------------------------------------
138
Wed May  4 09:34:58 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
139
140
- Chromium 101.0.4951.54 (boo#1199118)
141
- Chromium 101.0.4951.41 (boo#1198917)
142
  * CVE-2022-1477: Use after free in Vulkan
143
  * CVE-2022-1478: Use after free in SwiftShader
144
  * CVE-2022-1479: Use after free in ANGLE
145
  * CVE-2022-1480: Use after free in Device API
146
  * CVE-2022-1481: Use after free in Sharing
147
  * CVE-2022-1482: Inappropriate implementation in WebGL
148
  * CVE-2022-1483: Heap buffer overflow in WebGPU
149
  * CVE-2022-1484: Heap buffer overflow in Web UI Settings
150
  * CVE-2022-1485: Use after free in File System API
151
  * CVE-2022-1486: Type Confusion in V8
152
  * CVE-2022-1487: Use after free in Ozone
153
  * CVE-2022-1488: Inappropriate implementation in Extensions API
154
  * CVE-2022-1489: Out of bounds memory access in UI Shelf
155
  * CVE-2022-1490: Use after free in Browser Switcher
156
  * CVE-2022-1491: Use after free in Bookmarks
157
  * CVE-2022-1492: Insufficient data validation in Blink Editing
158
  * CVE-2022-1493: Use after free in Dev Tools
159
  * CVE-2022-1494: Insufficient data validation in Trusted Types
160
  * CVE-2022-1495: Incorrect security UI in Downloads
161
  * CVE-2022-1496: Use after free in File Manager
162
  * CVE-2022-1497: Inappropriate implementation in Input
163
  * CVE-2022-1498: Inappropriate implementation in HTML Parser
164
  * CVE-2022-1499: Inappropriate implementation in WebAuthentication
165
  * CVE-2022-1500: Insufficient data validation in Dev Tools
166
  * CVE-2022-1501: Inappropriate implementation in iframe
167
- Added patches:
168
  * chromium-101-libxml-unbundle.patch
169
  * chromium-101-segmentation_platform-type.patch
170
- Removed patches:
171
  * chromium-100-SCTHashdanceMetadata-move.patch
172
  * chromium-100-GLImplementationParts-constexpr.patch
173
  * chromium-100-macro-typo.patch
174
  
175
-------------------------------------------------------------------
176
Sun Apr 24 05:23:26 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
177
178
- Rebase chromium 100.0.4896.127 for use as chromium-ffmpeg-extra
179
180
-------------------------------------------------------------------
181
Thu Apr 21 10:04:22 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
182
183
- Fixes for go 1.18
184
185
-------------------------------------------------------------------
186
Fri Apr 15 07:29:35 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
187
188
- Chromium 100.0.4896.127 (boo#1198509)
189
  * CVE-2022-1364: Type Confusion in V8
190
  * Various fixes from internal audits, fuzzing and other initiatives
191
192
-------------------------------------------------------------------
193
Tue Apr 12 05:02:45 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
194
195
- Chromium 100.0.4896.88 (boo#1198361)
196
  * CVE-2022-1305: Use after free in storage
197
  * CVE-2022-1306: Inappropriate implementation in compositing
198
  * CVE-2022-1307: Inappropriate implementation in full screen
199
  * CVE-2022-1308: Use after free in BFCache
200
  * CVE-2022-1309: Insufficient policy enforcement in developer tools
201
  * CVE-2022-1310: Use after free in regular expressions
202
  * CVE-2022-1311: Use after free in Chrome OS shell
203
  * CVE-2022-1312: Use after free in storage
204
  * CVE-2022-1313: Use after free in tab groups
205
  * CVE-2022-1314: Type Confusion in V8
206
  * Various fixes from internal audits, fuzzing and other initiatives
207
208
-------------------------------------------------------------------
209
Sun Apr 10 13:52:31 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
210
211
- Patches for GCC 12:
212
  * chromium-fix-swiftshader-template.patch
213
  * chromium-missing-include-tuple.patch
214
  * chromium-webrtc-stats-missing-vector.patch
215
216
-------------------------------------------------------------------
217
Tue Apr  5 02:11:03 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
218
219
- Chromium 100.0.4896.75:
220
  * CVE-2022-1232: Type Confusion in V8 (boo#1198053)
221
222
-------------------------------------------------------------------
223
Wed Mar 30 16:25:44 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
224
225
- Chromium 100.0.4896.60 (boo#1197680)
226
  * CVE-2022-1125: Use after free in Portals
227
  * CVE-2022-1127: Use after free in QR Code Generator
228
  * CVE-2022-1128: Inappropriate implementation in Web Share API
229
  * CVE-2022-1129: Inappropriate implementation in Full Screen Mode
230
  * CVE-2022-1130: Insufficient validation of untrusted input in WebOTP
231
  * CVE-2022-1131: Use after free in Cast UI
232
  * CVE-2022-1132: Inappropriate implementation in Virtual Keyboard
233
  * CVE-2022-1133: Use after free in WebRTC
234
  * CVE-2022-1134: Type Confusion in V8
235
  * CVE-2022-1135: Use after free in Shopping Cart
236
  * CVE-2022-1136: Use after free in Tab Strip
237
  * CVE-2022-1137: Inappropriate implementation in Extensions
238
  * CVE-2022-1138: Inappropriate implementation in Web Cursor
239
  * CVE-2022-1139: Inappropriate implementation in Background Fetch API
240
  * CVE-2022-1141: Use after free in File Manager
241
  * CVE-2022-1142: Heap buffer overflow in WebUI
242
  * CVE-2022-1143: Heap buffer overflow in WebUI
243
  * CVE-2022-1144: Use after free in WebUI
244
  * CVE-2022-1145: Use after free in Extensions
245
  * CVE-2022-1146: Inappropriate implementation in Resource Timing
246
- Added patches:
247
  * chromium-100-compiler.patch
248
  * chromium-100-GLImplementationParts-constexpr.patch
249
  * chromium-100-InMilliseconds-constexpr.patch
250
  * chromium-100-SCTHashdanceMetadata-move.patch
251
  * chromium-100-macro-typo.patch
252
- Removed patches:
253
  * chromium-98-compiler.patch
254
  * chromium-86-nearby-explicit.patch
255
  * chromium-glibc-2.34.patch
256
  * chromium-v8-missing-utility-include.patch
257
  * chromium-99-AutofillAssistantModelExecutor-NoDestructor.patch
258
259
-------------------------------------------------------------------
260
Tue Mar 29 09:23:28 UTC 2022 - Andreas Schwab <schwab@suse.de>
261
262
- Update disk constraints
263
264
-------------------------------------------------------------------
265
Sat Mar 26 15:10:15 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
266
267
- Chromium 99.0.4844.84:
268
  * CVE-2022-1096: Type Confusion in V8 (boo#1197552)
269
270
-------------------------------------------------------------------
271
Mon Mar 21 05:07:25 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
272
273
- Chromium 99.0.4844.82:
274
  * Fix potential problem in Hangouts (boo#1197332)
275
276
-------------------------------------------------------------------
277
Wed Mar 16 09:36:49 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
278
279
- Chromium 99.0.4844.74 (boo#1197163)
280
  * CVE-2022-0971: Use after free in Blink Layout
281
  * CVE-2022-0972: Use after free in Extensions
282
  * CVE-2022-0973: Use after free in Safe Browsing
283
  * CVE-2022-0974: Use after free in Splitscreen
284
  * CVE-2022-0975: Use after free in ANGLE
285
  * CVE-2022-0976: Heap buffer overflow in GPU
286
  * CVE-2022-0977: Use after free in Browser UI
287
  * CVE-2022-0978: Use after free in ANGLE
288
  * CVE-2022-0979: Use after free in Safe Browsing
289
  * CVE-2022-0980: Use after free in New Tab Page
290
  * Various fixes from internal audits, fuzzing and other initiatives
291
292
-------------------------------------------------------------------
293
Fri Mar  4 10:46:36 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
294
295
- Chromium 99.0.4844.51 (boo#1196641)
296
  * CVE-2022-0789: Heap buffer overflow in ANGLE
297
  * CVE-2022-0790: Use after free in Cast UI
298
  * CVE-2022-0791: Use after free in Omnibox
299
  * CVE-2022-0792: Out of bounds read in ANGLE
300
  * CVE-2022-0793: Use after free in Views
301
  * CVE-2022-0794: Use after free in WebShare
302
  * CVE-2022-0795: Type Confusion in Blink Layout
303
  * CVE-2022-0796: Use after free in Media
304
  * CVE-2022-0797: Out of bounds memory access in Mojo
305
  * CVE-2022-0798: Use after free in MediaStream
306
  * CVE-2022-0799: Insufficient policy enforcement in Installer
307
  * CVE-2022-0800: Heap buffer overflow in Cast UI
308
  * CVE-2022-0801: Inappropriate implementation in HTML parser
309
  * CVE-2022-0802: Inappropriate implementation in Full screen mode
310
  * CVE-2022-0803: Inappropriate implementation in Permissions
311
  * CVE-2022-0804: Inappropriate implementation in Full screen mode
312
  * CVE-2022-0805: Use after free in Browser Switcher
313
  * CVE-2022-0806: Data leak in Canvas
314
  * CVE-2022-0807: Inappropriate implementation in Autofill
315
  * CVE-2022-0808: Use after free in Chrome OS Shell
316
  * CVE-2022-0809: Out of bounds memory access in WebXR
317
- Removed patches:
318
  * chromium-96-EnumTable-crash.patch
319
  * chromium-89-missing-cstring-header.patch
320
  * chromium-95-libyuv-aarch64.patch
321
  * chromium-95-libyuv-arm.patch
322
  * chromium-98-MiraclePtr-gcc-ice.patch
323
  * chromium-98-WaylandFrameManager-check.patch
324
- Added patches:
325
  * chromium-97-arm-tflite-cast.patch
326
  * chromium-98-gtk4-build.patch
327
  * chromium-99-AutofillAssistantModelExecutor-NoDestructor.patch
328
  * chromium-98-EnumTable-crash.patch
329
  * chromium-third_party-symbolize-missing-include.patch
330
  * chromium-v8-missing-utility-include.patch
331
332
-------------------------------------------------------------------
333
Tue Feb 15 19:13:43 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
334
335
- Chromium 98.0.4758.102 (boo#1195986)
336
  * CVE-2022-0603: Use after free in File Manager
337
  * CVE-2022-0604: Heap buffer overflow in Tab Groups
338
  * CVE-2022-0605: Use after free in Webstore API
339
  * CVE-2022-0606: Use after free in ANGLE
340
  * CVE-2022-0607: Use after free in GPU
341
  * CVE-2022-0608: Integer overflow in Mojo
342
  * CVE-2022-0609: Use after free in Animation
343
  * CVE-2022-0610: Inappropriate implementation in Gamepad API
344
  * Various fixes from internal audits, fuzzing and other initiatives
345
346
-------------------------------------------------------------------
347
Thu Feb  3 19:35:46 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
348
349
- Chromium 98.0.4758.80 (boo#1195420)
350
  * CVE-2022-0452: Use after free in Safe Browsing
351
  * CVE-2022-0453: Use after free in Reader Mode
352
  * CVE-2022-0454: Heap buffer overflow in ANGLE
353
  * CVE-2022-0455: Inappropriate implementation in Full Screen Mode
354
  * CVE-2022-0456: Use after free in Web Search
355
  * CVE-2022-0457: Type Confusion in V8
356
  * CVE-2022-0459: Use after free in Screen Capture
357
  * CVE-2022-0460: Use after free in Window Dialog
358
  * CVE-2022-0461: Policy bypass in COOP
359
  * CVE-2022-0462: Inappropriate implementation in Scroll
360
  * CVE-2022-0463: Use after free in Accessibility
361
  * CVE-2022-0464: Use after free in Accessibility
362
  * CVE-2022-0465: Use after free in Extensions
363
  * CVE-2022-0466: Inappropriate implementation in Extensions Platform
364
  * CVE-2022-0467: Inappropriate implementation in Pointer Lock
365
  * CVE-2022-0468: Use after free in Payments
366
  * CVE-2022-0469: Use after free in Cast
367
  * CVE-2022-0470: Out of bounds memory access in V8
368
  * Various fixes from internal audits, fuzzing and other initiatives
369
- drop upstreamed patches:
370
  * chromium-97-Point-constexpr.patch
371
- add patches:
372
  * chromium-98-MiraclePtr-gcc-ice.patch
373
  * chromium-98-WaylandFrameManager-check.patch
374
- change chromium-97-compiler.patch to chromium-98-compiler.patch
375
376
-------------------------------------------------------------------
377
Fri Jan 21 06:43:25 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
378
379
- Chromium 97.0.4692.99 (boo#1194919):
380
  * CVE-2022-0289: Use after free in Safe browsing
381
  * CVE-2022-0290: Use after free in Site isolation
382
  * CVE-2022-0291: Inappropriate implementation in Storage
383
  * CVE-2022-0292: Inappropriate implementation in Fenced Frames
384
  * CVE-2022-0293: Use after free in Web packaging
385
  * CVE-2022-0294: Inappropriate implementation in Push messaging
386
  * CVE-2022-0295: Use after free in Omnibox
387
  * CVE-2022-0296: Use after free in Printing
388
  * CVE-2022-0297: Use after free in Vulkan
389
  * CVE-2022-0298: Use after free in Scheduling
390
  * CVE-2022-0300: Use after free in Text Input Method Editor
391
  * CVE-2022-0301: Heap buffer overflow in DevTools
392
  * CVE-2022-0302: Use after free in Omnibox
393
  * CVE-2022-0303: Race in GPU Watchdog
394
  * CVE-2022-0304: Use after free in Bookmarks
395
  * CVE-2022-0305: Inappropriate implementation in Service Worker API
396
  * CVE-2022-0306: Heap buffer overflow in PDFium
397
  * CVE-2022-0307: Use after free in Optimization Guide
398
  * CVE-2022-0308: Use after free in Data Transfer
399
  * CVE-2022-0309: Inappropriate implementation in Autofill
400
  * CVE-2022-0310: Heap buffer overflow in Task Manager
401
  * CVE-2022-0311: Heap buffer overflow in Task Manager
402
  * Various fixes from internal audits, fuzzing and other initiatives
403
- drop upstreamed patches:
404
  * fix-tag-dragging-in-Mutter.patch
405
  * fix-tag-dragging-in-KWin.patch
406
407
-------------------------------------------------------------------
408
Thu Jan 20 09:46:50 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
409
410
- Revert chromium-94-ffmpeg-roll.patch on TW: fix moved to
411
  FFmpeg
412
413
-------------------------------------------------------------------
414
Sun Jan 16 12:05:13 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
415
416
- Rebase chromium 97.0.4692.71 for use as chromium-ffmpeg-extra
417
- Use gcc10 instead of gcc 11
418
419
Tue Jan 11 20:00:16 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
420
421
- Chromium 97.0.4692.71 (boo#1194331):
422
  * CVE-2022-0096: Use after free in Storage
423
  * CVE-2022-0097: Inappropriate implementation in DevTools
424
  * CVE-2022-0098: Use after free in Screen Capture
425
  * CVE-2022-0099: Use after free in Sign-in
426
  * CVE-2022-0100: Heap buffer overflow in Media streams API
427
  * CVE-2022-0101: Heap buffer overflow in Bookmarks
428
  * CVE-2022-0102: Type Confusion in V8
429
  * CVE-2022-0103: Use after free in SwiftShader
430
  * CVE-2022-0104: Heap buffer overflow in ANGLE
431
  * CVE-2022-0105: Use after free in PDF
432
  * CVE-2022-0106: Use after free in Autofill
433
  * CVE-2022-0107: Use after free in File Manager API
434
  * CVE-2022-0108: Inappropriate implementation in Navigation
435
  * CVE-2022-0109: Inappropriate implementation in Autofill
436
  * CVE-2022-0110: Incorrect security UI in Autofill
437
  * CVE-2022-0111: Inappropriate implementation in Navigation
438
  * CVE-2022-0112: Incorrect security UI in Browser UI
439
  * CVE-2022-0113: Inappropriate implementation in Blink
440
  * CVE-2022-0114: Out of bounds memory access in Web Serial
441
  * CVE-2022-0115: Uninitialized Use in File API
442
  * CVE-2022-0116: Inappropriate implementation in Compositing
443
  * CVE-2022-0117: Policy bypass in Service Workers
444
  * CVE-2022-0118: Inappropriate implementation in WebShare
445
  * CVE-2022-0120: Inappropriate implementation in Passwords
446
- Removed patches:
447
  * chromium-96-CommandLine-include.patch
448
  * chromium-96-RestrictedCookieManager-tuple.patch
449
  * chromium-96-DrmRenderNodePathFinder-include.patch
450
  * chromium-96-CouponDB-include.patch
451
  * chromium-96-freetype-unbundle.patch
452
  * chromium-96-compiler.patch
453
  * chromium-vaapi.patch
454
  * chromium-86-nearby-include.patch
455
- Added patches:
456
  * chromium-97-compiler.patch
457
  * chromium-97-Point-constexpr.patch
458
  * chromium-97-ScrollView-reference.patch
459
  * chromium-95-libyuv-arm.patch
460
  * fix-tag-dragging-in-KWin.patch
461
  * fix-tag-dragging-in-Mutter.patch 
462
463
-------------------------------------------------------------------
464
Thu Dec 30 15:30:19 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
465
466
- Revert wayland fixes because it doesn't handle GPU correctly
467
  (boo#1194182)
468
469
-------------------------------------------------------------------
470
Thu Dec 30 08:38:17 UTC 2021 - Martin Liška <mliska@suse.cz>
471
472
- Use GCC 11, but disable LTO (boo#1194055).
473
474
-------------------------------------------------------------------
475
Wed Dec 29 12:23:48 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
476
477
- Use our own copy of the wrapper so that we can use the fixes
478
  for Wayland
479
480
-------------------------------------------------------------------
481
Sun Dec 26 23:02:18 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
482
483
- Define GNU_SOURCE and fix the below patched issues
484
- Removed patches:
485
  * chromium-86-f_seal.patch
486
  * chromium-90-fseal.patch
487
488
-------------------------------------------------------------------
489
Fri Dec 24 11:24:13 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
490
491
- Added patches:
492
  * chromium-96-freetype-unbundle.patch
493
  * chromium-96-EnumTable-crash.patch
494
- Unbundle freetype on TW
495
- Unbundle icu on 15.4
496
- Disable lto and update _constraints on aarch64
497
- Remove MEIPreload: it gets installed through component updater
498
499
-------------------------------------------------------------------
500
Wed Dec 15 10:54:35 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
501
502
- Revert to gcc10 on TW: gcc11 is entirely broken
503
- No auto thread LTO: linker crash on ARM
504
505
-------------------------------------------------------------------
506
Tue Dec 14 15:24:47 UTC 2021 - Andreas Stieger <andreas.stieger@gmx.de>
507
508
- Chromium 96.0.4664.110 (boo#1193713):
509
  * CVE-2021-4098: Insufficient data validation in Mojo
510
  * CVE-2021-4099: Use after free in Swiftshader
511
  * CVE-2021-4100: Object lifecycle issue in ANGLE
512
  * CVE-2021-4101: Heap buffer overflow in Swiftshader
513
  * CVE-2021-4102: Use after free in V8
514
515
-------------------------------------------------------------------
516
Thu Dec  9 09:49:23 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
517
518
- Lord of the Browsers: The Two Compilers:
519
  * Go back to GCC
520
  * GCC: LTO removes needed assembly symbols
521
  * Clang: issues with libstdc++
522
- Chromium 96.0.4664.93 (boo#1193519):
523
  * CVE-2021-4052: Use after free in web apps
524
  * CVE-2021-4053: Use after free in UI
525
  * CVE-2021-4079: Out of bounds write in WebRTC
526
  * CVE-2021-4054: Incorrect security UI in autofill
527
  * CVE-2021-4078: Type confusion in V8
528
  * CVE-2021-4055: Heap buffer overflow in extensions
529
  * CVE-2021-4056: Type Confusion in loader
530
  * CVE-2021-4057: Use after free in file API
531
  * CVE-2021-4058: Heap buffer overflow in ANGLE
532
  * CVE-2021-4059: Insufficient data validation in loader
533
  * CVE-2021-4061: Type Confusion in V8
534
  * CVE-2021-4062: Heap buffer overflow in BFCache
535
  * CVE-2021-4063: Use after free in developer tools
536
  * CVE-2021-4064: Use after free in screen capture
537
  * CVE-2021-4065: Use after free in autofill
538
  * CVE-2021-4066: Integer underflow in ANGLE
539
  * CVE-2021-4067: Use after free in window manager
540
  * CVE-2021-4068: Insufficient validation of untrusted input in new tab page
541
- Chromium 96.0.4664.45 (boo#1192734):
542
  * CVE-2021-38007: Type Confusion in V8
543
  * CVE-2021-38008: Use after free in media
544
  * CVE-2021-38009: Inappropriate implementation in cache
545
  * CVE-2021-38006: Use after free in storage foundation
546
  * CVE-2021-38005: Use after free in loader
547
  * CVE-2021-38010: Inappropriate implementation in service workers
548
  * CVE-2021-38011: Use after free in storage foundation
549
  * CVE-2021-38012: Type Confusion in V8
550
  * CVE-2021-38013: Heap buffer overflow in fingerprint recognition
551
  * CVE-2021-38014: Out of bounds write in Swiftshader
552
  * CVE-2021-38015: Inappropriate implementation in input
553
  * CVE-2021-38016: Insufficient policy enforcement in background fetch
554
  * CVE-2021-38017: Insufficient policy enforcement in iframe sandbox
555
  * CVE-2021-38018: Inappropriate implementation in navigation
556
  * CVE-2021-38019: Insufficient policy enforcement in CORS
557
  * CVE-2021-38020: Insufficient policy enforcement in contacts picker
558
  * CVE-2021-38021: Inappropriate implementation in referrer
559
  * CVE-2021-38022: Inappropriate implementation in WebAuthentication
560
- Removed old patches:
561
  * chromium-95-compiler.patch
562
  * chromium-95-BitstreamReader-namespace.patch
563
  * chromium-95-system-zlib.patch
564
  * chromium-older-harfbuzz.patch
565
  * pipewire-do-not-typecheck-the-portal-session_handle.patch
566
- Removed build breaking patches:
567
  * chromium-93-EnumTable-crash.patch
568
- Added patches:
569
  * chromium-96-compiler.patch
570
  * chromium-96-CommandLine-include.patch
571
  * chromium-96-RestrictedCookieManager-tuple.patch
572
  * chromium-96-DrmRenderNodePathFinder-include.patch
573
  * chromium-96-CouponDB-include.patch
574
- Changed patches:
575
  * gcc-enable-lto.patch: see above
576
577
-------------------------------------------------------------------
578
Fri Nov 19 09:32:39 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
579
580
- Ensure newer libs and LLVM is used on Leap (boo#1192310)
581
582
-------------------------------------------------------------------
583
Wed Nov 17 10:08:55 UTC 2021 - Steve Kowalik <steven.kowalik@suse.com>
584
585
- Explicitly BuildRequire python3-six.
586
587
-------------------------------------------------------------------
588
Wed Nov 10 20:03:53 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
589
590
- Chromium 95.0.4638.69 (boo#1192184):
591
  * CVE-2021-37997: Use after free in Sign-In
592
  * CVE-2021-37998: Use after free in Garbage Collection
593
  * CVE-2021-37999: Insufficient data validation in New Tab Page
594
  * CVE-2021-38000: Insufficient validation of untrusted input in Intents
595
  * CVE-2021-38001: Type Confusion in V8
596
  * CVE-2021-38002: Use after free in Web Transport
597
  * CVE-2021-38003: Inappropriate implementation in V8
598
- Chromium 95.0.4638.54 (boo#1191844):
599
  * CVE-2021-37981: Heap buffer overflow in Skia
600
  * CVE-2021-37982: Use after free in Incognito
601
  * CVE-2021-37983: Use after free in Dev Tools
602
  * CVE-2021-37984: Heap buffer overflow in PDFium
603
  * CVE-2021-37985: Use after free in V8
604
  * CVE-2021-37986: Heap buffer overflow in Settings
605
  * CVE-2021-37987: Use after free in Network APIs
606
  * CVE-2021-37988: Use after free in Profiles
607
  * CVE-2021-37989: Inappropriate implementation in Blink
608
  * CVE-2021-37990: Inappropriate implementation in WebView
609
  * CVE-2021-37991: Race in V8
610
  * CVE-2021-37992: Out of bounds read in WebAudio
611
  * CVE-2021-37993: Use after free in PDF Accessibility
612
  * CVE-2021-37996: Insufficient validation of untrusted input in Downloads
613
  * CVE-2021-37994: Inappropriate implementation in iFrame Sandbox
614
  * CVE-2021-37995: Inappropriate implementation in WebApp Installer
615
- Added patches:
616
  * chromium-95-BitstreamReader-namespace.patch
617
  * chromium-95-compiler.patch
618
  * chromium-95-libyuv-aarch64.patch
619
  * chromium-95-quiche-include.patch
620
  * chromium-95-system-zlib.patch
621
- Removed patches:
622
  * chromium-94-compiler.patch
623
  * chromium-91-libyuv-aarch64.patch
624
  * chromium-90-ruy-include.patch
625
  * chromium-94-CustomSpaces-include.patch
626
627
-------------------------------------------------------------------
628
Sat Oct  9 05:32:48 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
629
630
- Removed patches:
631
  * chromium-94-ffmpeg-roll.patch
632
633
-------------------------------------------------------------------
634
Fri Oct  8 19:46:13 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
635
636
- Chromium 94.0.4606.81 (boo#1191463):
637
  * CVE-2021-37977: Use after free in Garbage Collection
638
  * CVE-2021-37978: Heap buffer overflow in Blink
639
  * CVE-2021-37979: Heap buffer overflow in WebRTC
640
  * CVE-2021-37980: Inappropriate implementation in Sandbox
641
- Re-add after accidental deletion:
642
  * chromium-93-InkDropHost-crash.patch
643
- Chromium 94.0.4606.54 (boo#1190765):
644
  * CVE-2021-37956: Use after free in Offline use
645
  * CVE-2021-37957: Use after free in WebGPU
646
  * CVE-2021-37958: Inappropriate implementation in Navigation
647
  * CVE-2021-37959: Use after free in Task Manager
648
  * CVE-2021-37960: Inappropriate implementation in Blink graphics
649
  * CVE-2021-37961: Use after free in Tab Strip
650
  * CVE-2021-37962: Use after free in Performance Manager
651
  * CVE-2021-37963: Side-channel information leakage in DevTools
652
  * CVE-2021-37964: Inappropriate implementation in ChromeOS Networking
653
  * CVE-2021-37965: Inappropriate implementation in Background Fetch API
654
  * CVE-2021-37966: Inappropriate implementation in Compositing
655
  * CVE-2021-37967: Inappropriate implementation in Background Fetch API
656
  * CVE-2021-37968: Inappropriate implementation in Background Fetch API
657
  * CVE-2021-37969: Inappropriate implementation in Google Updater
658
  * CVE-2021-37970: Use after free in File System API
659
  * CVE-2021-37971: Incorrect security UI in Web Browser UI
660
  * CVE-2021-37972: Out of bounds read in libjpeg-turbo
661
- Chromium 94.0.4606.61 (boo#1191166):
662
  * CVE-2021-37973: Use after free in Portals
663
- Chromium 94.0.4606.71 (boo#1191204):
664
  * CVE-2021-37974 : Use after free in Safe Browsing
665
  * CVE-2021-37975 : Use after free in V8
666
  * CVE-2021-37976 : Information leak in core
667
- Added patches:
668
  * chromium-94-CustomSpaces-include.patch
669
  * chromium-94-sql-no-assert.patch
670
  * chromium-older-harfbuzz.patch
671
  * chromium-94-ffmpeg-roll.patch
672
  * chromium-94-compiler.patch
673
- Removed patches:
674
  * chromium-freetype-2.11.patch
675
  * chromium-93-ContextSet-permissive.patch
676
  * chromium-93-ClassProperty-include.patch
677
  * chromium-93-BluetoothLowEnergyScanFilter-include.patch
678
  * chromium-93-HashPasswordManager-include.patch
679
  * chromium-93-pdfium-include.patch
680
  * chromium-93-DevToolsEmbedderMessageDispatcher-include.patch
681
  * chromium-93-FormForest-constexpr.patch
682
  * chromium-93-ScopedTestDialogAutoConfirm-include.patch
683
  * chromium-93-InkDropHost-crash.patch
684
  * chromium-91-compiler.patch
685
  * chromium-glibc-2.33.patch
686
  * chromium-shim_headers.patch 
687
688
-------------------------------------------------------------------
689
Fri Sep 24 17:16:41 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
690
691
- Add patch to fix Leap 15.2 build:
692
  * chromium-ffmpeg-lp152.patch
693
- Change system-libdrm.patch: add to unbundle instead of changing
694
  header path
695
696
-------------------------------------------------------------------
697
Sun Sep 19 19:41:03 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
698
699
- Update to 93.0.4577.82
700
  Branch of https://build.opensuse.org/project/show/network:chromium
701
- Drop conditional build for libffmpeg, we want it here definitely
702
703
-------------------------------------------------------------------
704
Tue Oct 16 05:18:00 UTC 2018 - avvissu@yandex.by
705
706
- Add chromium-old-glibc.patch
707
708
-------------------------------------------------------------------
709
Fri Sep 21 20:49:51 UTC 2018 - fisiu@opensuse.org
710
711
- Update to 69.0.3497.100.
712
713
-------------------------------------------------------------------
714
Sat Mar 24 00:09:38 UTC 2018 - fisiu@opensuse.org
715
716
- Make symlink to allow Opera find libffmpeg.so.
717
718
-------------------------------------------------------------------
719
Fri Feb  2 23:21:51 UTC 2018 - fisiu@opensuse.org
720
721
- Update to 64.0.3282.134
722
- Drop fix-gn-bootstrap.diff: fixed upstream.
723
- Drop fix-gn-bootstrap.diff: build with gcc7.
724
- Add chromium-angle.patch: fix build issue.
725
- Add chromium-memcpy.patch: fix build issue.
726
727
-------------------------------------------------------------------
728
Mon Oct 16 15:42:17 UTC 2017 - avvissu@yandex.by
729
730
- Update to 61.0.3163.100
731
732
-------------------------------------------------------------------
733
Fri Jun 23 20:05:27 UTC 2017 - avvissu@yandex.by
734
735
- Update to 59.0.3071.104
736
737
-------------------------------------------------------------------
738
Fri Apr 28 05:04:38 UTC 2017 - avvissu@yandex.by
739
740
- Update to 58.0.3029.81
741
742
-------------------------------------------------------------------
743
Tue Apr 11 05:24:41 UTC 2017 - avvissu@yandex.by
744
745
- Use a custom toolchain
746
747
-------------------------------------------------------------------
748
Wed Apr  5 17:08:12 UTC 2017 - avvissu@yandex.by
749
750
- Remove --verbose flag
751
- Add chromium-fix-gn-bootstrap.patch
752
753
-------------------------------------------------------------------
754
Wed Mar 29 14:01:10 UTC 2017 - avvissu@yandex.by
755
756
- Initial release
757
758