Package chromium-kde: Information

    Binary package: chromium-kde
    Version: 80.0.3987.132-alt1
    Architecture: aarch64
    Build time:  Mar 12, 2020, 05:08 PM in the task #247705
    Source package: chromium
    Category: Networking/WWW
    Report package bug
    License: BSD-3-Clause and LGPL-2.1+
    Summary: Update to chromium to use KDE's kwallet to store passwords
    Description: 
    By using the update-alternatives the password store for Chromium is
    changed to utilize KDE's kwallet. Please be aware that by this change
    the old password are no longer accessible and are also not converted
    to kwallet.

    Maintainer: Alexey Gladkov


    Last changed


    March 6, 2020 Alexey Gladkov 80.0.3987.132-alt1
    - New version (80.0.3987.132).
    - Security fixes:
      - CVE-2019-18197: Multiple vulnerabilities in XML.
      - CVE-2019-19923: Out of bounds memory access in SQLite.
      - CVE-2019-19925: Multiple vulnerabilities in SQLite.
      - CVE-2019-19926: Inappropriate implementation in SQLite.
      - CVE-2020-6381: Integer overflow in JavaScript.
      - CVE-2020-6382: Type Confusion in JavaScript.
      - CVE-2020-6383: Type confusion in V8.
      - CVE-2020-6384: Use after free in WebAudio.
      - CVE-2020-6385: Insufficient policy enforcement in storage.
      - CVE-2020-6386: Use after free in speech.
      - CVE-2020-6387: Out of bounds write in WebRTC.
      - CVE-2020-6388: Out of bounds memory access in WebAudio.
      - CVE-2020-6389: Out of bounds write in WebRTC.
      - CVE-2020-6390: Out of bounds memory access in streams.
      - CVE-2020-6391: Insufficient validation of untrusted input in Blink.
      - CVE-2020-6392: Insufficient policy enforcement in extensions.
      - CVE-2020-6393: Insufficient policy enforcement in Blink.
      - CVE-2020-6394: Insufficient policy enforcement in Blink.
      - CVE-2020-6395: Out of bounds read in JavaScript.
      - CVE-2020-6396: Inappropriate implementation in Skia.
      - CVE-2020-6397: Incorrect security UI in sharing.
      - CVE-2020-6398: Uninitialized use in PDFium.
      - CVE-2020-6399: Insufficient policy enforcement in AppCache.
      - CVE-2020-6400: Inappropriate implementation in CORS.
      - CVE-2020-6401: Insufficient validation of untrusted input in Omnibox.
      - CVE-2020-6402: Insufficient policy enforcement in downloads.
      - CVE-2020-6403: Incorrect security UI in Omnibox.
      - CVE-2020-6404: Inappropriate implementation in Blink.
      - CVE-2020-6405: Out of bounds read in SQLite.
      - CVE-2020-6406: Use after free in audio.
      - CVE-2020-6407: Out of bounds memory access in streams.
      - CVE-2020-6408: Insufficient policy enforcement in CORS.
      - CVE-2020-6409: Inappropriate implementation in Omnibox.
      - CVE-2020-6410: Insufficient policy enforcement in navigation.
      - CVE-2020-6411: Insufficient validation of untrusted input in Omnibox.
      - CVE-2020-6412: Insufficient validation of untrusted input in Omnibox.
      - CVE-2020-6413: Inappropriate implementation in Blink.
      - CVE-2020-6414: Insufficient policy enforcement in Safe Browsing.
      - CVE-2020-6415: Inappropriate implementation in JavaScript.
      - CVE-2020-6416: Insufficient data validation in streams.
      - CVE-2020-6417: Inappropriate implementation in installer.
      - CVE-2020-6418: Type confusion in V8.
      - CVE-2020-6420: Insufficient policy enforcement in media.
    Feb. 3, 2020 Alexey Gladkov 79.0.3945.130-alt1
    - New version (79.0.3945.130).
    - Security fixes:
      - CVE-2019-13767: Use after free in media picker.
      - CVE-2020-6377: Use after free in audio.
      - CVE-2020-6378: Use-after-free in speech recognizer.
      - CVE-2020-6379: Use-after-free in speech recognizer.
      - CVE-2020-6380: Extension message verification error.
    Dec. 16, 2019 Alexey Gladkov 79.0.3945.79-alt1
    - New version (79.0.3945.79).
    - Security fixes:
      - CVE-2019-13725: Use after free in Bluetooth.
      - CVE-2019-13726: Heap buffer overflow in password manager.
      - CVE-2019-13727: Insufficient policy enforcement in WebSockets.
      - CVE-2019-13728: Out of bounds write in V8.
      - CVE-2019-13729: Use after free in WebSockets.
      - CVE-2019-13730: Type Confusion in V8.
      - CVE-2019-13732: Use after free in WebAudio.
      - CVE-2019-13734: Out of bounds write in SQLite.
      - CVE-2019-13735: Out of bounds write in V8.
      - CVE-2019-13736: Integer overflow in PDFium.
      - CVE-2019-13737: Insufficient policy enforcement in autocomplete.
      - CVE-2019-13738: Insufficient policy enforcement in navigation.
      - CVE-2019-13739: Incorrect security UI in Omnibox.
      - CVE-2019-13740: Incorrect security UI in sharing.
      - CVE-2019-13741: Insufficient validation of untrusted input in Blink.
      - CVE-2019-13742: Incorrect security UI in Omnibox.
      - CVE-2019-13743: Incorrect security UI in external protocol handling.
      - CVE-2019-13744: Insufficient policy enforcement in cookies.
      - CVE-2019-13745: Insufficient policy enforcement in audio.
      - CVE-2019-13746: Insufficient policy enforcement in Omnibox.
      - CVE-2019-13747: Uninitialized Use in rendering.
      - CVE-2019-13748: Insufficient policy enforcement in developer tools.
      - CVE-2019-13749: Incorrect security UI in Omnibox.
      - CVE-2019-13750: Insufficient data validation in SQLite.
      - CVE-2019-13751: Uninitialized Use in SQLite.
      - CVE-2019-13752: Out of bounds read in SQLite.
      - CVE-2019-13753: Out of bounds read in SQLite.
      - CVE-2019-13754: Insufficient policy enforcement in extensions.
      - CVE-2019-13755: Insufficient policy enforcement in extensions.
      - CVE-2019-13756: Incorrect security UI in printing.
      - CVE-2019-13757: Incorrect security UI in Omnibox.
      - CVE-2019-13758: Insufficient policy enforcement in navigation.
      - CVE-2019-13759: Incorrect security UI in interstitials.
      - CVE-2019-13761: Incorrect security UI in Omnibox.
      - CVE-2019-13762: Insufficient policy enforcement in downloads.
      - CVE-2019-13763: Insufficient policy enforcement in payments.
      - CVE-2019-13764: Type Confusion in V8.