{"schema_version":"1.7.3","id":"openSUSE-SU-2020:1937-1","published":"2020-11-15T19:26:30Z","modified":"2026-02-04T02:51:50.448723Z","related":["CVE-2020-16004","CVE-2020-16005","CVE-2020-16006","CVE-2020-16007","CVE-2020-16008","CVE-2020-16009","CVE-2020-16011"],"upstream":["CVE-2020-16004","CVE-2020-16005","CVE-2020-16006","CVE-2020-16007","CVE-2020-16008","CVE-2020-16009","CVE-2020-16011"],"summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\n- Update to 86.0.4240.183 boo#1178375\n  - CVE-2020-16004: Use after free in user interface.\n  - CVE-2020-16005: Insufficient policy enforcement in ANGLE.\n  - CVE-2020-16006: Inappropriate implementation in V8\n  - CVE-2020-16007: Insufficient data validation in installer.\n  - CVE-2020-16008: Stack buffer overflow in WebRTC.\n  - CVE-2020-16009: Inappropriate implementation in V8.\n  - CVE-2020-16011: Heap buffer overflow in UI on Windows.\n\nThis update was imported from the openSUSE:Leap:15.1:Update update project.","affected":[{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP1","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"86.0.4240.183-bp151.3.125.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"86.0.4240.183-bp151.3.125.1","chromium":"86.0.4240.183-bp151.3.125.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2020:1937-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/ABZ54FWLCGQJEV7RPVRMYY7B5D4OPJ4P/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1178375"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16004"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16005"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16006"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16007"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16008"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16009"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2020-16011"}]}