{"id":"openSUSE-SU-2020:1215-1","summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\n- Chromium updated to 84.0.4147.125 (boo#1175085)\n  * CVE-2020-6542: Use after free in ANGLE\n  * CVE-2020-6543: Use after free in task scheduling\n  * CVE-2020-6544: Use after free in media\n  * CVE-2020-6545: Use after free in audio\n  * CVE-2020-6546: Inappropriate implementation in installer\n  * CVE-2020-6547: Incorrect security UI in media\n  * CVE-2020-6548: Heap buffer overflow in Skia\n  * CVE-2020-6549: Use after free in media\n  * CVE-2020-6550: Use after free in IndexedDB\n  * CVE-2020-6551: Use after free in WebXR\n  * CVE-2020-6552: Use after free in Blink\n  * CVE-2020-6553: Use after free in offline mode\n  * CVE-2020-6554: Use after free in extensions\n  * CVE-2020-6555: Out of bounds read in WebGL\n  * Various fixes from internal audits, fuzzing and other\n    initiatives\n\n- Disable wayland everywhere as it breaks headless and\n  middle mouse copy everywhere:\n  boo#1174497 boo#1175044\n\nThis update was imported from the openSUSE:Leap:15.2:Update update project.","modified":"2026-03-11T07:32:37.797223Z","published":"2020-08-15T12:18:48Z","related":["CVE-2020-6542","CVE-2020-6543","CVE-2020-6544","CVE-2020-6545","CVE-2020-6546","CVE-2020-6547","CVE-2020-6548","CVE-2020-6549","CVE-2020-6550","CVE-2020-6551","CVE-2020-6552","CVE-2020-6553","CVE-2020-6554","CVE-2020-6555"],"upstream":["CVE-2020-6542","CVE-2020-6543","CVE-2020-6544","CVE-2020-6545","CVE-2020-6546","CVE-2020-6547","CVE-2020-6548","CVE-2020-6549","CVE-2020-6550","CVE-2020-6551","CVE-2020-6552","CVE-2020-6553","CVE-2020-6554","CVE-2020-6555"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/E544YAK5LWX5WVKIPFBNOULUN6PN3ZV3/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1174497"},{"type":"REPORT","url":"https://bugzilla.suse.com/1175044"},{"type":"REPORT","url":"https://bugzilla.suse.com/1175085"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6542"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6543"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6544"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6545"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6546"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6547"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6548"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6549"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6550"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6551"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6552"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6553"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6554"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-6555"}],"affected":[{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP2","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"84.0.4147.125-bp152.2.13.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"84.0.4147.125-bp152.2.13.1","chromium":"84.0.4147.125-bp152.2.13.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2020:1215-1.json"}}],"schema_version":"1.7.5"}