{"schema_version":"1.7.3","id":"openSUSE-SU-2021:1462-1","published":"2021-11-08T14:24:30Z","modified":"2026-02-04T02:33:15.609124Z","related":["CVE-2021-37997","CVE-2021-37998","CVE-2021-37999","CVE-2021-38000","CVE-2021-38001","CVE-2021-38002","CVE-2021-38003"],"upstream":["CVE-2021-37997","CVE-2021-37998","CVE-2021-37999","CVE-2021-38000","CVE-2021-38001","CVE-2021-38002","CVE-2021-38003"],"summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\nChromium 95.0.4638.69 (boo#1192184):\n\n* CVE-2021-37997: Use after free in Sign-In\n* CVE-2021-37998: Use after free in Garbage Collection\n* CVE-2021-37999: Insufficient data validation in New Tab Page\n* CVE-2021-38000: Insufficient validation of untrusted input in Intents\n* CVE-2021-38001: Type Confusion in V8\n* CVE-2021-38002: Use after free in Web Transport\n* CVE-2021-38003: Inappropriate implementation in V8\n","affected":[{"package":{"name":"chromium","ecosystem":"SUSE:Package Hub 15 SP3","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"95.0.4638.69-bp153.2.40.3"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"95.0.4638.69-bp153.2.40.3","chromium":"95.0.4638.69-bp153.2.40.3"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:1462-1.json"}},{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.2","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.2"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"95.0.4638.69-bp153.2.40.3"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"95.0.4638.69-bp153.2.40.3","chromium":"95.0.4638.69-bp153.2.40.3"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:1462-1.json"}},{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.3","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.3"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"95.0.4638.69-bp153.2.40.3"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"95.0.4638.69-bp153.2.40.3","chromium":"95.0.4638.69-bp153.2.40.3"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2021:1462-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/LILU2Q77SAPFWPTS2P4ZOLY6WZ3NJCJN/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1192184"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-37997"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-37998"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-37999"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-38000"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-38001"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-38002"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-38003"}]}