File chromium-ffmpeg-extra.changes of Package chromium-ffmpeg-extra (Revision 23)

Currently displaying revision 23 , Show latest

764
 
1
-------------------------------------------------------------------
2
Sun Apr  2 10:10:49 UTC 2023 - Carsten Ziepke <kieltux@gmail.com>
3
4
- Use gcc11/gcc11-c++ for openSUSE Leap, use gcc12/gcc12-c++
5
  for openSUSE Tumbleweed, because fails with gcc13/gcc13-c++
6
7
-------------------------------------------------------------------
8
Thu Jul 14 16:38:50 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
9
10
- Rebase chromium 103.0.5060.114 for use as chromium-ffmpeg-extra
11
  - Fixes problems with audio and youtube video playback
12
13
-------------------------------------------------------------------
14
Sat Jul  9 12:52:33 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
15
16
- Chromium 103.0.5060.114 (boo#1201216)
17
  * CVE-2022-2294: Heap buffer overflow in WebRTC
18
  * CVE-2022-2295: Type Confusion in V8
19
  * CVE-2022-2296: Use after free in Chrome OS Shell
20
21
-------------------------------------------------------------------
22
Thu Jul  7 18:07:43 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
23
24
- Chromium 103.0.5060.66
25
  * no upstream release notes
26
27
-------------------------------------------------------------------
28
Sat Jun 25 10:43:48 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
29
30
- Chromium 103.0.5060.53 (boo#1200783)
31
  * CVE-2022-2156: Use after free in Base
32
  * CVE-2022-2157: Use after free in Interest groups
33
  * CVE-2022-2158: Type Confusion in V8
34
  * CVE-2022-2160: Insufficient policy enforcement in DevTools
35
  * CVE-2022-2161: Use after free in WebApp Provider
36
  * CVE-2022-2162: Insufficient policy enforcement in File System API
37
  * CVE-2022-2163: Use after free in Cast UI and Toolbar
38
  * CVE-2022-2164: Inappropriate implementation in Extensions API
39
  * CVE-2022-2165: Insufficient data validation in URL formatting
40
- Added patches:
41
  * chromium-103-FrameLoadRequest-type.patch
42
  * chromium-103-SubstringSetMatcher-packed.patch
43
  * chromium-103-VirtualCursor-std-layout.patch
44
  * chromium-103-compiler.patch
45
- Removed patches:
46
  * chromium-102-compiler.patch
47
  * chromium-91-sql-standard-layout-type.patch
48
  * chromium-101-libxml-unbundle.patch
49
  * chromium-102-fenced_frame_utils-include.patch
50
  * chromium-102-swiftshader-template-instantiation.patch
51
  * chromium-102-symbolize-include.patch
52
  * chromium-97-arm-tflite-cast.patch
53
  * chromium-97-ScrollView-reference.patch
54
55
-------------------------------------------------------------------
56
Fri Jun 10 15:35:20 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
57
58
- Chromium 102.0.5005.115 (boo#1200423)
59
  * CVE-2022-2007: Use after free in WebGPU
60
  * CVE-2022-2008: Out of bounds memory access in WebGL
61
  * CVE-2022-2010: Out of bounds read in compositing
62
  * CVE-2022-2011: Use after free in ANGLE
63
64
-------------------------------------------------------------------
65
Wed Jun  8 13:40:43 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
66
67
- Switch to GTK4 on TW and Leap 15.4+ (boo#1200139)
68
69
-------------------------------------------------------------------
70
Wed Jun  1 09:43:54 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
71
72
- Disable ARM control flow integrity, it causes build issues
73
  at the moment
74
- Try a different SVG (black logo on GNOME)
75
- Removed patches:
76
  * chromium-third_party-symbolize-missing-include.patch
77
  (replaced by chromium-102-symbolize-include.patch)
78
79
-------------------------------------------------------------------
80
Fri May 27 19:40:42 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
81
82
- Chromium 102.0.5001.61 (boo#1199893)
83
  * CVE-2022-1853: Use after free in Indexed DB
84
  * CVE-2022-1854: Use after free in ANGLE
85
  * CVE-2022-1855: Use after free in Messaging
86
  * CVE-2022-1856: Use after free in User Education
87
  * CVE-2022-1857: Insufficient policy enforcement in File System API
88
  * CVE-2022-1858: Out of bounds read in DevTools
89
  * CVE-2022-1859: Use after free in Performance Manager
90
  * CVE-2022-1860: Use after free in UI Foundations
91
  * CVE-2022-1861: Use after free in Sharing
92
  * CVE-2022-1862: Inappropriate implementation in Extensions
93
  * CVE-2022-1863: Use after free in Tab Groups
94
  * CVE-2022-1864: Use after free in WebApp Installs
95
  * CVE-2022-1865: Use after free in Bookmarks
96
  * CVE-2022-1866: Use after free in Tablet Mode
97
  * CVE-2022-1867: Insufficient validation of untrusted input in Data Transfer
98
  * CVE-2022-1868: Inappropriate implementation in Extensions API
99
  * CVE-2022-1869: Type Confusion in V8
100
  * CVE-2022-1870: Use after free in App Service
101
  * CVE-2022-1871: Insufficient policy enforcement in File System API
102
  * CVE-2022-1872: Insufficient policy enforcement in Extensions API
103
  * CVE-2022-1873: Insufficient policy enforcement in COOP
104
  * CVE-2022-1874: Insufficient policy enforcement in Safe Browsing
105
  * CVE-2022-1875: Inappropriate implementation in PDF
106
  * CVE-2022-1876: Heap buffer overflow in DevTools
107
- Added patches:
108
  * chromium-102-compiler.patch
109
  * chromium-102-fenced_frame_utils-include.patch
110
  * chromium-102-regex_pattern-array.patch
111
  * chromium-102-swiftshader-template-instantiation.patch
112
  * chromium-102-symbolize-include.patch
113
  * ffmpeg-new-channel-layout.patch
114
- Removed patches:
115
  * chromium-100-compiler.patch
116
  * chromium-80-QuicStreamSendBuffer-deleted-move-constructor.patch
117
  * chromium-95-quiche-include.patch
118
  * chromium-fix-swiftshader-template.patch
119
  * chromium-missing-include-tuple.patch
120
  * chromium-webrtc-stats-missing-vector.patch
121
  * chromium-101-segmentation_platform-type.patch
122
123
-------------------------------------------------------------------
124
Sun May 15 09:03:28 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
125
126
- Chromium 101.0.4951.67
127
  * fixes for other platforms
128
129
-------------------------------------------------------------------
130
Wed May 11 06:33:01 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
131
132
- Chromium 101.0.4951.64 (boo#1199409)
133
  * CVE-2022-1633: Use after free in Sharesheet
134
  * CVE-2022-1634: Use after free in Browser UI
135
  * CVE-2022-1635: Use after free in Permission Prompts
136
  * CVE-2022-1636: Use after free in Performance APIs
137
  * CVE-2022-1637: Inappropriate implementation in Web Contents
138
  * CVE-2022-1638: Heap buffer overflow in V8 Internationalization
139
  * CVE-2022-1639: Use after free in ANGLE
140
  * CVE-2022-1640: Use after free in Sharing
141
  * CVE-2022-1641: Use after free in Web UI Diagnostics
142
143
-------------------------------------------------------------------
144
Wed May  4 09:34:58 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
145
146
- Chromium 101.0.4951.54 (boo#1199118)
147
- Chromium 101.0.4951.41 (boo#1198917)
148
  * CVE-2022-1477: Use after free in Vulkan
149
  * CVE-2022-1478: Use after free in SwiftShader
150
  * CVE-2022-1479: Use after free in ANGLE
151
  * CVE-2022-1480: Use after free in Device API
152
  * CVE-2022-1481: Use after free in Sharing
153
  * CVE-2022-1482: Inappropriate implementation in WebGL
154
  * CVE-2022-1483: Heap buffer overflow in WebGPU
155
  * CVE-2022-1484: Heap buffer overflow in Web UI Settings
156
  * CVE-2022-1485: Use after free in File System API
157
  * CVE-2022-1486: Type Confusion in V8
158
  * CVE-2022-1487: Use after free in Ozone
159
  * CVE-2022-1488: Inappropriate implementation in Extensions API
160
  * CVE-2022-1489: Out of bounds memory access in UI Shelf
161
  * CVE-2022-1490: Use after free in Browser Switcher
162
  * CVE-2022-1491: Use after free in Bookmarks
163
  * CVE-2022-1492: Insufficient data validation in Blink Editing
164
  * CVE-2022-1493: Use after free in Dev Tools
165
  * CVE-2022-1494: Insufficient data validation in Trusted Types
166
  * CVE-2022-1495: Incorrect security UI in Downloads
167
  * CVE-2022-1496: Use after free in File Manager
168
  * CVE-2022-1497: Inappropriate implementation in Input
169
  * CVE-2022-1498: Inappropriate implementation in HTML Parser
170
  * CVE-2022-1499: Inappropriate implementation in WebAuthentication
171
  * CVE-2022-1500: Insufficient data validation in Dev Tools
172
  * CVE-2022-1501: Inappropriate implementation in iframe
173
- Added patches:
174
  * chromium-101-libxml-unbundle.patch
175
  * chromium-101-segmentation_platform-type.patch
176
- Removed patches:
177
  * chromium-100-SCTHashdanceMetadata-move.patch
178
  * chromium-100-GLImplementationParts-constexpr.patch
179
  * chromium-100-macro-typo.patch
180
  
181
-------------------------------------------------------------------
182
Sun Apr 24 05:23:26 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
183
184
- Rebase chromium 100.0.4896.127 for use as chromium-ffmpeg-extra
185
186
-------------------------------------------------------------------
187
Thu Apr 21 10:04:22 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
188
189
- Fixes for go 1.18
190
191
-------------------------------------------------------------------
192
Fri Apr 15 07:29:35 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
193
194
- Chromium 100.0.4896.127 (boo#1198509)
195
  * CVE-2022-1364: Type Confusion in V8
196
  * Various fixes from internal audits, fuzzing and other initiatives
197
198
-------------------------------------------------------------------
199
Tue Apr 12 05:02:45 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
200
201
- Chromium 100.0.4896.88 (boo#1198361)
202
  * CVE-2022-1305: Use after free in storage
203
  * CVE-2022-1306: Inappropriate implementation in compositing
204
  * CVE-2022-1307: Inappropriate implementation in full screen
205
  * CVE-2022-1308: Use after free in BFCache
206
  * CVE-2022-1309: Insufficient policy enforcement in developer tools
207
  * CVE-2022-1310: Use after free in regular expressions
208
  * CVE-2022-1311: Use after free in Chrome OS shell
209
  * CVE-2022-1312: Use after free in storage
210
  * CVE-2022-1313: Use after free in tab groups
211
  * CVE-2022-1314: Type Confusion in V8
212
  * Various fixes from internal audits, fuzzing and other initiatives
213
214
-------------------------------------------------------------------
215
Sun Apr 10 13:52:31 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
216
217
- Patches for GCC 12:
218
  * chromium-fix-swiftshader-template.patch
219
  * chromium-missing-include-tuple.patch
220
  * chromium-webrtc-stats-missing-vector.patch
221
222
-------------------------------------------------------------------
223
Tue Apr  5 02:11:03 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
224
225
- Chromium 100.0.4896.75:
226
  * CVE-2022-1232: Type Confusion in V8 (boo#1198053)
227
228
-------------------------------------------------------------------
229
Wed Mar 30 16:25:44 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
230
231
- Chromium 100.0.4896.60 (boo#1197680)
232
  * CVE-2022-1125: Use after free in Portals
233
  * CVE-2022-1127: Use after free in QR Code Generator
234
  * CVE-2022-1128: Inappropriate implementation in Web Share API
235
  * CVE-2022-1129: Inappropriate implementation in Full Screen Mode
236
  * CVE-2022-1130: Insufficient validation of untrusted input in WebOTP
237
  * CVE-2022-1131: Use after free in Cast UI
238
  * CVE-2022-1132: Inappropriate implementation in Virtual Keyboard
239
  * CVE-2022-1133: Use after free in WebRTC
240
  * CVE-2022-1134: Type Confusion in V8
241
  * CVE-2022-1135: Use after free in Shopping Cart
242
  * CVE-2022-1136: Use after free in Tab Strip
243
  * CVE-2022-1137: Inappropriate implementation in Extensions
244
  * CVE-2022-1138: Inappropriate implementation in Web Cursor
245
  * CVE-2022-1139: Inappropriate implementation in Background Fetch API
246
  * CVE-2022-1141: Use after free in File Manager
247
  * CVE-2022-1142: Heap buffer overflow in WebUI
248
  * CVE-2022-1143: Heap buffer overflow in WebUI
249
  * CVE-2022-1144: Use after free in WebUI
250
  * CVE-2022-1145: Use after free in Extensions
251
  * CVE-2022-1146: Inappropriate implementation in Resource Timing
252
- Added patches:
253
  * chromium-100-compiler.patch
254
  * chromium-100-GLImplementationParts-constexpr.patch
255
  * chromium-100-InMilliseconds-constexpr.patch
256
  * chromium-100-SCTHashdanceMetadata-move.patch
257
  * chromium-100-macro-typo.patch
258
- Removed patches:
259
  * chromium-98-compiler.patch
260
  * chromium-86-nearby-explicit.patch
261
  * chromium-glibc-2.34.patch
262
  * chromium-v8-missing-utility-include.patch
263
  * chromium-99-AutofillAssistantModelExecutor-NoDestructor.patch
264
265
-------------------------------------------------------------------
266
Tue Mar 29 09:23:28 UTC 2022 - Andreas Schwab <schwab@suse.de>
267
268
- Update disk constraints
269
270
-------------------------------------------------------------------
271
Sat Mar 26 15:10:15 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
272
273
- Chromium 99.0.4844.84:
274
  * CVE-2022-1096: Type Confusion in V8 (boo#1197552)
275
276
-------------------------------------------------------------------
277
Mon Mar 21 05:07:25 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
278
279
- Chromium 99.0.4844.82:
280
  * Fix potential problem in Hangouts (boo#1197332)
281
282
-------------------------------------------------------------------
283
Wed Mar 16 09:36:49 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
284
285
- Chromium 99.0.4844.74 (boo#1197163)
286
  * CVE-2022-0971: Use after free in Blink Layout
287
  * CVE-2022-0972: Use after free in Extensions
288
  * CVE-2022-0973: Use after free in Safe Browsing
289
  * CVE-2022-0974: Use after free in Splitscreen
290
  * CVE-2022-0975: Use after free in ANGLE
291
  * CVE-2022-0976: Heap buffer overflow in GPU
292
  * CVE-2022-0977: Use after free in Browser UI
293
  * CVE-2022-0978: Use after free in ANGLE
294
  * CVE-2022-0979: Use after free in Safe Browsing
295
  * CVE-2022-0980: Use after free in New Tab Page
296
  * Various fixes from internal audits, fuzzing and other initiatives
297
298
-------------------------------------------------------------------
299
Fri Mar  4 10:46:36 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
300
301
- Chromium 99.0.4844.51 (boo#1196641)
302
  * CVE-2022-0789: Heap buffer overflow in ANGLE
303
  * CVE-2022-0790: Use after free in Cast UI
304
  * CVE-2022-0791: Use after free in Omnibox
305
  * CVE-2022-0792: Out of bounds read in ANGLE
306
  * CVE-2022-0793: Use after free in Views
307
  * CVE-2022-0794: Use after free in WebShare
308
  * CVE-2022-0795: Type Confusion in Blink Layout
309
  * CVE-2022-0796: Use after free in Media
310
  * CVE-2022-0797: Out of bounds memory access in Mojo
311
  * CVE-2022-0798: Use after free in MediaStream
312
  * CVE-2022-0799: Insufficient policy enforcement in Installer
313
  * CVE-2022-0800: Heap buffer overflow in Cast UI
314
  * CVE-2022-0801: Inappropriate implementation in HTML parser
315
  * CVE-2022-0802: Inappropriate implementation in Full screen mode
316
  * CVE-2022-0803: Inappropriate implementation in Permissions
317
  * CVE-2022-0804: Inappropriate implementation in Full screen mode
318
  * CVE-2022-0805: Use after free in Browser Switcher
319
  * CVE-2022-0806: Data leak in Canvas
320
  * CVE-2022-0807: Inappropriate implementation in Autofill
321
  * CVE-2022-0808: Use after free in Chrome OS Shell
322
  * CVE-2022-0809: Out of bounds memory access in WebXR
323
- Removed patches:
324
  * chromium-96-EnumTable-crash.patch
325
  * chromium-89-missing-cstring-header.patch
326
  * chromium-95-libyuv-aarch64.patch
327
  * chromium-95-libyuv-arm.patch
328
  * chromium-98-MiraclePtr-gcc-ice.patch
329
  * chromium-98-WaylandFrameManager-check.patch
330
- Added patches:
331
  * chromium-97-arm-tflite-cast.patch
332
  * chromium-98-gtk4-build.patch
333
  * chromium-99-AutofillAssistantModelExecutor-NoDestructor.patch
334
  * chromium-98-EnumTable-crash.patch
335
  * chromium-third_party-symbolize-missing-include.patch
336
  * chromium-v8-missing-utility-include.patch
337
338
-------------------------------------------------------------------
339
Tue Feb 15 19:13:43 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
340
341
- Chromium 98.0.4758.102 (boo#1195986)
342
  * CVE-2022-0603: Use after free in File Manager
343
  * CVE-2022-0604: Heap buffer overflow in Tab Groups
344
  * CVE-2022-0605: Use after free in Webstore API
345
  * CVE-2022-0606: Use after free in ANGLE
346
  * CVE-2022-0607: Use after free in GPU
347
  * CVE-2022-0608: Integer overflow in Mojo
348
  * CVE-2022-0609: Use after free in Animation
349
  * CVE-2022-0610: Inappropriate implementation in Gamepad API
350
  * Various fixes from internal audits, fuzzing and other initiatives
351
352
-------------------------------------------------------------------
353
Thu Feb  3 19:35:46 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
354
355
- Chromium 98.0.4758.80 (boo#1195420)
356
  * CVE-2022-0452: Use after free in Safe Browsing
357
  * CVE-2022-0453: Use after free in Reader Mode
358
  * CVE-2022-0454: Heap buffer overflow in ANGLE
359
  * CVE-2022-0455: Inappropriate implementation in Full Screen Mode
360
  * CVE-2022-0456: Use after free in Web Search
361
  * CVE-2022-0457: Type Confusion in V8
362
  * CVE-2022-0459: Use after free in Screen Capture
363
  * CVE-2022-0460: Use after free in Window Dialog
364
  * CVE-2022-0461: Policy bypass in COOP
365
  * CVE-2022-0462: Inappropriate implementation in Scroll
366
  * CVE-2022-0463: Use after free in Accessibility
367
  * CVE-2022-0464: Use after free in Accessibility
368
  * CVE-2022-0465: Use after free in Extensions
369
  * CVE-2022-0466: Inappropriate implementation in Extensions Platform
370
  * CVE-2022-0467: Inappropriate implementation in Pointer Lock
371
  * CVE-2022-0468: Use after free in Payments
372
  * CVE-2022-0469: Use after free in Cast
373
  * CVE-2022-0470: Out of bounds memory access in V8
374
  * Various fixes from internal audits, fuzzing and other initiatives
375
- drop upstreamed patches:
376
  * chromium-97-Point-constexpr.patch
377
- add patches:
378
  * chromium-98-MiraclePtr-gcc-ice.patch
379
  * chromium-98-WaylandFrameManager-check.patch
380
- change chromium-97-compiler.patch to chromium-98-compiler.patch
381
382
-------------------------------------------------------------------
383
Fri Jan 21 06:43:25 UTC 2022 - Andreas Stieger <andreas.stieger@gmx.de>
384
385
- Chromium 97.0.4692.99 (boo#1194919):
386
  * CVE-2022-0289: Use after free in Safe browsing
387
  * CVE-2022-0290: Use after free in Site isolation
388
  * CVE-2022-0291: Inappropriate implementation in Storage
389
  * CVE-2022-0292: Inappropriate implementation in Fenced Frames
390
  * CVE-2022-0293: Use after free in Web packaging
391
  * CVE-2022-0294: Inappropriate implementation in Push messaging
392
  * CVE-2022-0295: Use after free in Omnibox
393
  * CVE-2022-0296: Use after free in Printing
394
  * CVE-2022-0297: Use after free in Vulkan
395
  * CVE-2022-0298: Use after free in Scheduling
396
  * CVE-2022-0300: Use after free in Text Input Method Editor
397
  * CVE-2022-0301: Heap buffer overflow in DevTools
398
  * CVE-2022-0302: Use after free in Omnibox
399
  * CVE-2022-0303: Race in GPU Watchdog
400
  * CVE-2022-0304: Use after free in Bookmarks
401
  * CVE-2022-0305: Inappropriate implementation in Service Worker API
402
  * CVE-2022-0306: Heap buffer overflow in PDFium
403
  * CVE-2022-0307: Use after free in Optimization Guide
404
  * CVE-2022-0308: Use after free in Data Transfer
405
  * CVE-2022-0309: Inappropriate implementation in Autofill
406
  * CVE-2022-0310: Heap buffer overflow in Task Manager
407
  * CVE-2022-0311: Heap buffer overflow in Task Manager
408
  * Various fixes from internal audits, fuzzing and other initiatives
409
- drop upstreamed patches:
410
  * fix-tag-dragging-in-Mutter.patch
411
  * fix-tag-dragging-in-KWin.patch
412
413
-------------------------------------------------------------------
414
Thu Jan 20 09:46:50 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
415
416
- Revert chromium-94-ffmpeg-roll.patch on TW: fix moved to
417
  FFmpeg
418
419
-------------------------------------------------------------------
420
Sun Jan 16 12:05:13 UTC 2022 - Carsten Ziepke <kieltux@gmail.com>
421
422
- Rebase chromium 97.0.4692.71 for use as chromium-ffmpeg-extra
423
- Use gcc10 instead of gcc 11
424
425
Tue Jan 11 20:00:16 UTC 2022 - Callum Farmer <gmbr3@opensuse.org>
426
427
- Chromium 97.0.4692.71 (boo#1194331):
428
  * CVE-2022-0096: Use after free in Storage
429
  * CVE-2022-0097: Inappropriate implementation in DevTools
430
  * CVE-2022-0098: Use after free in Screen Capture
431
  * CVE-2022-0099: Use after free in Sign-in
432
  * CVE-2022-0100: Heap buffer overflow in Media streams API
433
  * CVE-2022-0101: Heap buffer overflow in Bookmarks
434
  * CVE-2022-0102: Type Confusion in V8
435
  * CVE-2022-0103: Use after free in SwiftShader
436
  * CVE-2022-0104: Heap buffer overflow in ANGLE
437
  * CVE-2022-0105: Use after free in PDF
438
  * CVE-2022-0106: Use after free in Autofill
439
  * CVE-2022-0107: Use after free in File Manager API
440
  * CVE-2022-0108: Inappropriate implementation in Navigation
441
  * CVE-2022-0109: Inappropriate implementation in Autofill
442
  * CVE-2022-0110: Incorrect security UI in Autofill
443
  * CVE-2022-0111: Inappropriate implementation in Navigation
444
  * CVE-2022-0112: Incorrect security UI in Browser UI
445
  * CVE-2022-0113: Inappropriate implementation in Blink
446
  * CVE-2022-0114: Out of bounds memory access in Web Serial
447
  * CVE-2022-0115: Uninitialized Use in File API
448
  * CVE-2022-0116: Inappropriate implementation in Compositing
449
  * CVE-2022-0117: Policy bypass in Service Workers
450
  * CVE-2022-0118: Inappropriate implementation in WebShare
451
  * CVE-2022-0120: Inappropriate implementation in Passwords
452
- Removed patches:
453
  * chromium-96-CommandLine-include.patch
454
  * chromium-96-RestrictedCookieManager-tuple.patch
455
  * chromium-96-DrmRenderNodePathFinder-include.patch
456
  * chromium-96-CouponDB-include.patch
457
  * chromium-96-freetype-unbundle.patch
458
  * chromium-96-compiler.patch
459
  * chromium-vaapi.patch
460
  * chromium-86-nearby-include.patch
461
- Added patches:
462
  * chromium-97-compiler.patch
463
  * chromium-97-Point-constexpr.patch
464
  * chromium-97-ScrollView-reference.patch
465
  * chromium-95-libyuv-arm.patch
466
  * fix-tag-dragging-in-KWin.patch
467
  * fix-tag-dragging-in-Mutter.patch 
468
469
-------------------------------------------------------------------
470
Thu Dec 30 15:30:19 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
471
472
- Revert wayland fixes because it doesn't handle GPU correctly
473
  (boo#1194182)
474
475
-------------------------------------------------------------------
476
Thu Dec 30 08:38:17 UTC 2021 - Martin Liška <mliska@suse.cz>
477
478
- Use GCC 11, but disable LTO (boo#1194055).
479
480
-------------------------------------------------------------------
481
Wed Dec 29 12:23:48 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
482
483
- Use our own copy of the wrapper so that we can use the fixes
484
  for Wayland
485
486
-------------------------------------------------------------------
487
Sun Dec 26 23:02:18 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
488
489
- Define GNU_SOURCE and fix the below patched issues
490
- Removed patches:
491
  * chromium-86-f_seal.patch
492
  * chromium-90-fseal.patch
493
494
-------------------------------------------------------------------
495
Fri Dec 24 11:24:13 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
496
497
- Added patches:
498
  * chromium-96-freetype-unbundle.patch
499
  * chromium-96-EnumTable-crash.patch
500
- Unbundle freetype on TW
501
- Unbundle icu on 15.4
502
- Disable lto and update _constraints on aarch64
503
- Remove MEIPreload: it gets installed through component updater
504
505
-------------------------------------------------------------------
506
Wed Dec 15 10:54:35 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
507
508
- Revert to gcc10 on TW: gcc11 is entirely broken
509
- No auto thread LTO: linker crash on ARM
510
511
-------------------------------------------------------------------
512
Tue Dec 14 15:24:47 UTC 2021 - Andreas Stieger <andreas.stieger@gmx.de>
513
514
- Chromium 96.0.4664.110 (boo#1193713):
515
  * CVE-2021-4098: Insufficient data validation in Mojo
516
  * CVE-2021-4099: Use after free in Swiftshader
517
  * CVE-2021-4100: Object lifecycle issue in ANGLE
518
  * CVE-2021-4101: Heap buffer overflow in Swiftshader
519
  * CVE-2021-4102: Use after free in V8
520
521
-------------------------------------------------------------------
522
Thu Dec  9 09:49:23 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
523
524
- Lord of the Browsers: The Two Compilers:
525
  * Go back to GCC
526
  * GCC: LTO removes needed assembly symbols
527
  * Clang: issues with libstdc++
528
- Chromium 96.0.4664.93 (boo#1193519):
529
  * CVE-2021-4052: Use after free in web apps
530
  * CVE-2021-4053: Use after free in UI
531
  * CVE-2021-4079: Out of bounds write in WebRTC
532
  * CVE-2021-4054: Incorrect security UI in autofill
533
  * CVE-2021-4078: Type confusion in V8
534
  * CVE-2021-4055: Heap buffer overflow in extensions
535
  * CVE-2021-4056: Type Confusion in loader
536
  * CVE-2021-4057: Use after free in file API
537
  * CVE-2021-4058: Heap buffer overflow in ANGLE
538
  * CVE-2021-4059: Insufficient data validation in loader
539
  * CVE-2021-4061: Type Confusion in V8
540
  * CVE-2021-4062: Heap buffer overflow in BFCache
541
  * CVE-2021-4063: Use after free in developer tools
542
  * CVE-2021-4064: Use after free in screen capture
543
  * CVE-2021-4065: Use after free in autofill
544
  * CVE-2021-4066: Integer underflow in ANGLE
545
  * CVE-2021-4067: Use after free in window manager
546
  * CVE-2021-4068: Insufficient validation of untrusted input in new tab page
547
- Chromium 96.0.4664.45 (boo#1192734):
548
  * CVE-2021-38007: Type Confusion in V8
549
  * CVE-2021-38008: Use after free in media
550
  * CVE-2021-38009: Inappropriate implementation in cache
551
  * CVE-2021-38006: Use after free in storage foundation
552
  * CVE-2021-38005: Use after free in loader
553
  * CVE-2021-38010: Inappropriate implementation in service workers
554
  * CVE-2021-38011: Use after free in storage foundation
555
  * CVE-2021-38012: Type Confusion in V8
556
  * CVE-2021-38013: Heap buffer overflow in fingerprint recognition
557
  * CVE-2021-38014: Out of bounds write in Swiftshader
558
  * CVE-2021-38015: Inappropriate implementation in input
559
  * CVE-2021-38016: Insufficient policy enforcement in background fetch
560
  * CVE-2021-38017: Insufficient policy enforcement in iframe sandbox
561
  * CVE-2021-38018: Inappropriate implementation in navigation
562
  * CVE-2021-38019: Insufficient policy enforcement in CORS
563
  * CVE-2021-38020: Insufficient policy enforcement in contacts picker
564
  * CVE-2021-38021: Inappropriate implementation in referrer
565
  * CVE-2021-38022: Inappropriate implementation in WebAuthentication
566
- Removed old patches:
567
  * chromium-95-compiler.patch
568
  * chromium-95-BitstreamReader-namespace.patch
569
  * chromium-95-system-zlib.patch
570
  * chromium-older-harfbuzz.patch
571
  * pipewire-do-not-typecheck-the-portal-session_handle.patch
572
- Removed build breaking patches:
573
  * chromium-93-EnumTable-crash.patch
574
- Added patches:
575
  * chromium-96-compiler.patch
576
  * chromium-96-CommandLine-include.patch
577
  * chromium-96-RestrictedCookieManager-tuple.patch
578
  * chromium-96-DrmRenderNodePathFinder-include.patch
579
  * chromium-96-CouponDB-include.patch
580
- Changed patches:
581
  * gcc-enable-lto.patch: see above
582
583
-------------------------------------------------------------------
584
Fri Nov 19 09:32:39 UTC 2021 - Callum Farmer <gmbr3@opensuse.org>
585
586
- Ensure newer libs and LLVM is used on Leap (boo#1192310)
587
588
-------------------------------------------------------------------
589
Wed Nov 17 10:08:55 UTC 2021 - Steve Kowalik <steven.kowalik@suse.com>
590
591
- Explicitly BuildRequire python3-six.
592
593
-------------------------------------------------------------------
594
Wed Nov 10 20:03:53 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
595
596
- Chromium 95.0.4638.69 (boo#1192184):
597
  * CVE-2021-37997: Use after free in Sign-In
598
  * CVE-2021-37998: Use after free in Garbage Collection
599
  * CVE-2021-37999: Insufficient data validation in New Tab Page
600
  * CVE-2021-38000: Insufficient validation of untrusted input in Intents
601
  * CVE-2021-38001: Type Confusion in V8
602
  * CVE-2021-38002: Use after free in Web Transport
603
  * CVE-2021-38003: Inappropriate implementation in V8
604
- Chromium 95.0.4638.54 (boo#1191844):
605
  * CVE-2021-37981: Heap buffer overflow in Skia
606
  * CVE-2021-37982: Use after free in Incognito
607
  * CVE-2021-37983: Use after free in Dev Tools
608
  * CVE-2021-37984: Heap buffer overflow in PDFium
609
  * CVE-2021-37985: Use after free in V8
610
  * CVE-2021-37986: Heap buffer overflow in Settings
611
  * CVE-2021-37987: Use after free in Network APIs
612
  * CVE-2021-37988: Use after free in Profiles
613
  * CVE-2021-37989: Inappropriate implementation in Blink
614
  * CVE-2021-37990: Inappropriate implementation in WebView
615
  * CVE-2021-37991: Race in V8
616
  * CVE-2021-37992: Out of bounds read in WebAudio
617
  * CVE-2021-37993: Use after free in PDF Accessibility
618
  * CVE-2021-37996: Insufficient validation of untrusted input in Downloads
619
  * CVE-2021-37994: Inappropriate implementation in iFrame Sandbox
620
  * CVE-2021-37995: Inappropriate implementation in WebApp Installer
621
- Added patches:
622
  * chromium-95-BitstreamReader-namespace.patch
623
  * chromium-95-compiler.patch
624
  * chromium-95-libyuv-aarch64.patch
625
  * chromium-95-quiche-include.patch
626
  * chromium-95-system-zlib.patch
627
- Removed patches:
628
  * chromium-94-compiler.patch
629
  * chromium-91-libyuv-aarch64.patch
630
  * chromium-90-ruy-include.patch
631
  * chromium-94-CustomSpaces-include.patch
632
633
-------------------------------------------------------------------
634
Sat Oct  9 05:32:48 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
635
636
- Removed patches:
637
  * chromium-94-ffmpeg-roll.patch
638
639
-------------------------------------------------------------------
640
Fri Oct  8 19:46:13 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
641
642
- Chromium 94.0.4606.81 (boo#1191463):
643
  * CVE-2021-37977: Use after free in Garbage Collection
644
  * CVE-2021-37978: Heap buffer overflow in Blink
645
  * CVE-2021-37979: Heap buffer overflow in WebRTC
646
  * CVE-2021-37980: Inappropriate implementation in Sandbox
647
- Re-add after accidental deletion:
648
  * chromium-93-InkDropHost-crash.patch
649
- Chromium 94.0.4606.54 (boo#1190765):
650
  * CVE-2021-37956: Use after free in Offline use
651
  * CVE-2021-37957: Use after free in WebGPU
652
  * CVE-2021-37958: Inappropriate implementation in Navigation
653
  * CVE-2021-37959: Use after free in Task Manager
654
  * CVE-2021-37960: Inappropriate implementation in Blink graphics
655
  * CVE-2021-37961: Use after free in Tab Strip
656
  * CVE-2021-37962: Use after free in Performance Manager
657
  * CVE-2021-37963: Side-channel information leakage in DevTools
658
  * CVE-2021-37964: Inappropriate implementation in ChromeOS Networking
659
  * CVE-2021-37965: Inappropriate implementation in Background Fetch API
660
  * CVE-2021-37966: Inappropriate implementation in Compositing
661
  * CVE-2021-37967: Inappropriate implementation in Background Fetch API
662
  * CVE-2021-37968: Inappropriate implementation in Background Fetch API
663
  * CVE-2021-37969: Inappropriate implementation in Google Updater
664
  * CVE-2021-37970: Use after free in File System API
665
  * CVE-2021-37971: Incorrect security UI in Web Browser UI
666
  * CVE-2021-37972: Out of bounds read in libjpeg-turbo
667
- Chromium 94.0.4606.61 (boo#1191166):
668
  * CVE-2021-37973: Use after free in Portals
669
- Chromium 94.0.4606.71 (boo#1191204):
670
  * CVE-2021-37974 : Use after free in Safe Browsing
671
  * CVE-2021-37975 : Use after free in V8
672
  * CVE-2021-37976 : Information leak in core
673
- Added patches:
674
  * chromium-94-CustomSpaces-include.patch
675
  * chromium-94-sql-no-assert.patch
676
  * chromium-older-harfbuzz.patch
677
  * chromium-94-ffmpeg-roll.patch
678
  * chromium-94-compiler.patch
679
- Removed patches:
680
  * chromium-freetype-2.11.patch
681
  * chromium-93-ContextSet-permissive.patch
682
  * chromium-93-ClassProperty-include.patch
683
  * chromium-93-BluetoothLowEnergyScanFilter-include.patch
684
  * chromium-93-HashPasswordManager-include.patch
685
  * chromium-93-pdfium-include.patch
686
  * chromium-93-DevToolsEmbedderMessageDispatcher-include.patch
687
  * chromium-93-FormForest-constexpr.patch
688
  * chromium-93-ScopedTestDialogAutoConfirm-include.patch
689
  * chromium-93-InkDropHost-crash.patch
690
  * chromium-91-compiler.patch
691
  * chromium-glibc-2.33.patch
692
  * chromium-shim_headers.patch 
693
694
-------------------------------------------------------------------
695
Fri Sep 24 17:16:41 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
696
697
- Add patch to fix Leap 15.2 build:
698
  * chromium-ffmpeg-lp152.patch
699
- Change system-libdrm.patch: add to unbundle instead of changing
700
  header path
701
702
-------------------------------------------------------------------
703
Sun Sep 19 19:41:03 UTC 2021 - Carsten Ziepke <kieltux@gmail.com>
704
705
- Update to 93.0.4577.82
706
  Branch of https://build.opensuse.org/project/show/network:chromium
707
- Drop conditional build for libffmpeg, we want it here definitely
708
709
-------------------------------------------------------------------
710
Tue Oct 16 05:18:00 UTC 2018 - avvissu@yandex.by
711
712
- Add chromium-old-glibc.patch
713
714
-------------------------------------------------------------------
715
Fri Sep 21 20:49:51 UTC 2018 - fisiu@opensuse.org
716
717
- Update to 69.0.3497.100.
718
719
-------------------------------------------------------------------
720
Sat Mar 24 00:09:38 UTC 2018 - fisiu@opensuse.org
721
722
- Make symlink to allow Opera find libffmpeg.so.
723
724
-------------------------------------------------------------------
725
Fri Feb  2 23:21:51 UTC 2018 - fisiu@opensuse.org
726
727
- Update to 64.0.3282.134
728
- Drop fix-gn-bootstrap.diff: fixed upstream.
729
- Drop fix-gn-bootstrap.diff: build with gcc7.
730
- Add chromium-angle.patch: fix build issue.
731
- Add chromium-memcpy.patch: fix build issue.
732
733
-------------------------------------------------------------------
734
Mon Oct 16 15:42:17 UTC 2017 - avvissu@yandex.by
735
736
- Update to 61.0.3163.100
737
738
-------------------------------------------------------------------
739
Fri Jun 23 20:05:27 UTC 2017 - avvissu@yandex.by
740
741
- Update to 59.0.3071.104
742
743
-------------------------------------------------------------------
744
Fri Apr 28 05:04:38 UTC 2017 - avvissu@yandex.by
745
746
- Update to 58.0.3029.81
747
748
-------------------------------------------------------------------
749
Tue Apr 11 05:24:41 UTC 2017 - avvissu@yandex.by
750
751
- Use a custom toolchain
752
753
-------------------------------------------------------------------
754
Wed Apr  5 17:08:12 UTC 2017 - avvissu@yandex.by
755
756
- Remove --verbose flag
757
- Add chromium-fix-gn-bootstrap.patch
758
759
-------------------------------------------------------------------
760
Wed Mar 29 14:01:10 UTC 2017 - avvissu@yandex.by
761
762
- Initial release
763
764