{"schema_version":"1.7.3","id":"openSUSE-SU-2021:0575-1","published":"2021-04-19T08:05:18Z","modified":"2026-02-04T04:02:50.564814Z","related":["CVE-2021-21206","CVE-2021-21220"],"upstream":["CVE-2021-21206","CVE-2021-21220"],"summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\n- Chromium 89.0.4389.128 (boo#1184700):\n  * CVE-2021-21206: Use after free in blink\n  * CVE-2021-21220: Insufficient validation of untrusted input in\n    v8 for x86_64\n\nThis update was imported from the openSUSE:Leap:15.2:Update update project.","affected":[{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP2","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"89.0.4389.128-bp152.2.71.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"89.0.4389.128-bp152.2.71.1","chromium":"89.0.4389.128-bp152.2.71.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:0575-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/7IO7QUUW232VPDW2BITKAFAZ63OJKMQB/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1184700"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-21206"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-21220"}]}