{"id":"openSUSE-SU-2026:21438-1","summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\nChanges in chromium:\n\n- Chromium 150.0.7871.181 (boo#1272156):\n  * CVE-2026-16420: Type Confusion in WebAudio\n  * CVE-2026-16421: Inappropriate implementation in WebAudio\n  * CVE-2026-16413: Out of bounds write in ANGLE\n  * CVE-2026-16414: Insufficient validation of untrusted input in Chromecast\n  * CVE-2026-16415: Insufficient validation of untrusted input in Extensions\n  * CVE-2026-16416: Integer overflow in Chromecast\n  * CVE-2026-16417: Uninitialized Use in Skia\n  * CVE-2026-16418: Stack buffer overflow in V8\n  * CVE-2026-16419: Out of bounds read and write in ANGLE\n  * CVE-2026-16422: Insufficient validation of untrusted input in Certificate\n  * CVE-2026-16423: Use after free in UI\n  * CVE-2026-16424: Use after free in GPU\n","modified":"2026-09-02T14:00:10.139948172Z","published":"2026-07-24T00:04:06Z","withdrawn":"2026-09-02T14:00:10.139947977Z","related":["CVE-2026-16413","CVE-2026-16414","CVE-2026-16415","CVE-2026-16416","CVE-2026-16417","CVE-2026-16418","CVE-2026-16419","CVE-2026-16420","CVE-2026-16421","CVE-2026-16422","CVE-2026-16423","CVE-2026-16424"],"upstream":["CVE-2026-16413","CVE-2026-16414","CVE-2026-16415","CVE-2026-16416","CVE-2026-16417","CVE-2026-16418","CVE-2026-16419","CVE-2026-16420","CVE-2026-16421","CVE-2026-16422","CVE-2026-16423","CVE-2026-16424"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1272156"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16413"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16414"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16415"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16416"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16417"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16418"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16419"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16420"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16421"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16422"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16423"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-16424"}],"affected":[{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"150.0.7871.181-bp160.1.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"150.0.7871.181-bp160.1.1","chromium":"150.0.7871.181-bp160.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21438-1.json"}}],"schema_version":"1.7.5"}