public inbox for git-commits@fedoraproject.org
help / color / mirror / Atom feed
* [rpms/chromium] epel9-next: - Update to 146.0.7680.164
@ 2026-08-07 16:08 Than Ngo
  0 siblings, 0 replies; only message in thread
From: Than Ngo @ 2026-08-07 16:08 UTC (permalink / raw)
  To: git-commits

          A new commit has been pushed.

          Repo   : rpms/chromium
          Branch : epel9-next
          Commit : 06e4f20d6144ced0b50d80ca89d7c5514d80aed5
          Author : Than Ngo <than@redhat.com>
          Date   : 2026-03-24T09:36:55+01:00
          Stats  : +13/-2 in 2 file(s)
          URL    : https://src.fedoraproject.org/rpms/chromium/c/06e4f20d6144ced0b50d80ca89d7c5514d80aed5?branch=epel9-next

          Log:
          - Update to 146.0.7680.164
* High CVE-2026-4673: Heap buffer overflow in WebAudio
* High CVE-2026-4674: Out of bounds read in CSS
* High CVE-2026-4675: Heap buffer overflow in WebGL
* High CVE-2026-4676: Use after free in Dawn
* High CVE-2026-4677: Out of bounds read in WebAudio
* High CVE-2026-4678: Use after free in WebGPU
* High CVE-2026-4679: Integer overflow in Fonts
* High CVE-2026-4680: Use after free in FedCM

---
diff --git a/chromium.spec b/chromium.spec
index 4cc8e65..b59ab63 100644
--- a/chromium.spec
+++ b/chromium.spec
@@ -262,7 +262,7 @@
 %endif
 
 Name:	chromium
-Version: 146.0.7680.153
+Version: 146.0.7680.164
 Release: 1%{?dist}
 Summary: A WebKit (Blink) powered web browser that Google doesn't want you to use
 Url: http://www.chromium.org/Home
@@ -1859,6 +1859,17 @@ fi
 %endif
 
 %changelog
+* Tue Mar 24 2026 Than Ngo <than@redhat.com> - 146.0.7680.164-1
+- Update to 146.0.7680.164
+  * High CVE-2026-4673: Heap buffer overflow in WebAudio
+  * High CVE-2026-4674: Out of bounds read in CSS
+  * High CVE-2026-4675: Heap buffer overflow in WebGL
+  * High CVE-2026-4676: Use after free in Dawn
+  * High CVE-2026-4677: Out of bounds read in WebAudio
+  * High CVE-2026-4678: Use after free in WebGPU
+  * High CVE-2026-4679: Integer overflow in Fonts
+  * High CVE-2026-4680: Use after free in FedCM
+
 * Fri Mar 20 2026 Than Ngo <than@redhat.com> - 146.0.7680.153-1
 - Update to 146.0.7680.153
   * CVE-2026-4439: Out of bounds memory access in WebGL

diff --git a/sources b/sources
index 5e556bc..3a665cc 100644
--- a/sources
+++ b/sources
@@ -1,4 +1,4 @@
 SHA512 (rollup-linux-arm64-gnu-4.22.4.tgz) = 01d3d1a0d8b734a54ba2508dfd2a7817837577df1ce120671cc2a82ee886e915e0a19e2c965b1eb868a8b33ba69cf1a63ccd8eeea6805ff20975e0d4f1fdba03
 SHA512 (rollup-linux-powerpc64le-gnu-4.22.4.tgz) = dda5422bdc5f596d68190a53b182493c5e9b7e959f85b46785d97285a936662c852c369acb3d043f98fd5754552c003196658a4c37d2f70c91c98de1be13e83a
 SHA512 (node-v22.22.0-stripped.tar.gz) = f32a8a73063b3c78cbacf941e11dd529ebcf2618b3ba661966312e49ee9870c43a3acf256e8d331a4b0b621b16a501810c02a3ad763c75884cc250addca8e106
-SHA512 (chromium-146.0.7680.153-clean.tar.xz) = 0a0d331447abe4df28f1d9e25a67810bfdecd39aa9679233628cbcab239025a35cb98e49939bf3184df6fae04e41453f7125d24b07dbde584e06ac88f71c8ef0
+SHA512 (chromium-146.0.7680.164-clean.tar.xz) = 339d5d48a6b1b607bdb0f7af0a0d3b01af064ba2239cb5dd6d92972f3a550769c9737bc62188317b05e517a4717bc3f74d759b1cfe8aba5cdfd58928294d4c1e

^ permalink raw reply related	[flat|nested] only message in thread

only message in thread, other threads:[~2026-08-07 16:08 UTC | newest]

Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2026-08-07 16:08 [rpms/chromium] epel9-next: - Update to 146.0.7680.164 Than Ngo

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox