{"schema_version":"1.7.3","id":"openSUSE-SU-2019:1557-1","published":"2019-06-15T16:34:44Z","modified":"2026-02-04T03:22:52.702858Z","related":["CVE-2019-5828","CVE-2019-5829","CVE-2019-5830","CVE-2019-5831","CVE-2019-5832","CVE-2019-5833","CVE-2019-5834","CVE-2019-5835","CVE-2019-5836","CVE-2019-5837","CVE-2019-5838","CVE-2019-5839","CVE-2019-5840"],"upstream":["CVE-2019-5828","CVE-2019-5829","CVE-2019-5830","CVE-2019-5831","CVE-2019-5832","CVE-2019-5833","CVE-2019-5834","CVE-2019-5835","CVE-2019-5836","CVE-2019-5837","CVE-2019-5838","CVE-2019-5839","CVE-2019-5840"],"summary":"Security update for chromium","details":"This update for chromium to version 75.0.3770.80 fixes the following issues:\n\nSecurity issues fixed: \n\t  \n- CVE-2019-5828: Fixed a Use after free in ServiceWorker\n- CVE-2019-5829: Fixed Use after free in Download Manager\n- CVE-2019-5830: Fixed an incorrectly credentialed requests in CORS\n- CVE-2019-5831: Fixed an incorrect map processing in V8\n- CVE-2019-5832: Fixed an incorrect CORS handling in XHR\n- CVE-2019-5833: Fixed an inconsistent security UI placemen\n- CVE-2019-5835: Fixed an out of bounds read in Swiftshader\n- CVE-2019-5836: Fixed a heap buffer overflow in Angle\n- CVE-2019-5837: Fixed a cross-origin resources size disclosure in Appcache\n- CVE-2019-5838: Fixed an overly permissive tab access in Extensions\n- CVE-2019-5839: Fixed an incorrect handling of certain code points in Blink\n- CVE-2019-5840: Fixed a popup blocker bypass\n- CVE-2019-5834: Fixed a URL spoof in Omnibox on iOS\n","affected":[{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 15.1","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.1"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"75.0.3770.80-lp151.2.6.1"}]}],"ecosystem_specific":{"binaries":[{"chromedriver":"75.0.3770.80-lp151.2.6.1","chromium":"75.0.3770.80-lp151.2.6.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2019:1557-1.json"}}],"references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/RIUSEIUCWM46Y5M4MDXH3FRV3BSFSGVJ/#RIUSEIUCWM46Y5M4MDXH3FRV3BSFSGVJ"},{"type":"REPORT","url":"https://bugzilla.suse.com/1137332"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5828"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5829"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5830"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5831"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5832"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5833"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5834"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5835"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5836"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5837"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5838"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5839"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2019-5840"}]}