{"id":"openSUSE-SU-2023:0249-1","summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\nUpdate to verion 117.0.5938.88 (boo#1215279):\n\n- CVE-2023-4900: Inappropriate implementation in Custom Tabs\n- CVE-2023-4901: Inappropriate implementation in Prompts\n- CVE-2023-4902: Inappropriate implementation in Input\n- CVE-2023-4903: Inappropriate implementation in Custom Mobile Tabs\n- CVE-2023-4904: Insufficient policy enforcement in Downloads\n- CVE-2023-4905: Inappropriate implementation in Prompts\n- CVE-2023-4906: Insufficient policy enforcement in Autofill\n- CVE-2023-4907: Inappropriate implementation in Intents\n- CVE-2023-4908: Inappropriate implementation in Picture in Picture\n- CVE-2023-4909: Inappropriate implementation in Interstitials\n","modified":"2026-03-11T07:33:39.410484Z","published":"2023-09-19T09:25:09Z","related":["CVE-2023-4900","CVE-2023-4901","CVE-2023-4902","CVE-2023-4903","CVE-2023-4904","CVE-2023-4905","CVE-2023-4906","CVE-2023-4907","CVE-2023-4908","CVE-2023-4909"],"upstream":["CVE-2023-4900","CVE-2023-4901","CVE-2023-4902","CVE-2023-4903","CVE-2023-4904","CVE-2023-4905","CVE-2023-4906","CVE-2023-4907","CVE-2023-4908","CVE-2023-4909"],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/MN26MICUYGDWUEPBBIGFRKH4W75UL6M2/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1215279"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4900"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4901"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4902"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4903"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4904"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4905"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4906"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4907"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4908"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2023-4909"}],"affected":[{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP4","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"117.0.5938.88-bp155.2.37.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"117.0.5938.88-bp155.2.37.1","chromium":"117.0.5938.88-bp155.2.37.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2023:0249-1.json"}},{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP5","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"117.0.5938.88-bp155.2.37.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"117.0.5938.88-bp155.2.37.1","chromium":"117.0.5938.88-bp155.2.37.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2023:0249-1.json"}},{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.4","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.4"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"117.0.5938.88-bp155.2.37.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"117.0.5938.88-bp155.2.37.1","chromium":"117.0.5938.88-bp155.2.37.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2023:0249-1.json"}},{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.5","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"117.0.5938.88-bp155.2.37.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"117.0.5938.88-bp155.2.37.1","chromium":"117.0.5938.88-bp155.2.37.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2023:0249-1.json"}}],"schema_version":"1.7.5"}