public inbox for git-commits@fedoraproject.org
help / color / mirror / Atom feed
From: Than Ngo <than@redhat.com>
To: git-commits@fedoraproject.org
Subject: [rpms/cef] rawhide: - Update to 147.0.7727.137
Date: Fri, 04 Sep 2026 17:42:33 GMT	[thread overview]
Message-ID: <178854375371.1.16044725295600983898.rpms-cef-2c254b09439b@fedoraproject.org> (raw)

         A new commit has been pushed.

         Repo   : rpms/cef
         Branch : rawhide
         Commit : 2c254b09439b4d55518a37d1ad08d8061a00e31d
         Author : Than Ngo <than@redhat.com>
         Date   : 2026-09-04T17:42:12+00:00
         Stats  : +3/-3 in 2 file(s)
         URL    : https://src.fedoraproject.org/rpms/cef/c/2c254b09439b4d55518a37d1ad08d8061a00e31d?branch=rawhide

         Log:
         - Update to 147.0.7727.137
* Critical CVE-2026-7363: Use after free in Canvas
* Critical CVE-2026-7361: Use after free in iOS
* Critical CVE-2026-7344: Use after free in Accessibility
* Critical CVE-2026-7343: Use after free in Views
* High CVE-2026-7333: Use after free in GPU
* High CVE-2026-7360: Insufficient validation of untrusted input in Compositing
* High CVE-2026-7359: Use after free in ANGLE
* High CVE-2026-7358: Use after free in Animation
* High CVE-2026-7334: Use after free in Views
* High CVE-2026-7357: Use after free in GPU
* High CVE-2026-7356: Use after free in Navigation
* High CVE-2026-7354: Out of bounds read and write in Angle
* High CVE-2026-7353: Heap buffer overflow in Skia
* High CVE-2026-7352: Use after free in Media
* High CVE-2026-7351: Race in MHTML
* High CVE-2026-7350: Use after free in WebMIDI
* High CVE-2026-7349: Use after free in Cast
* High CVE-2026-7348: Use after free in Codecs
* High CVE-2026-7335: Use after free in media
* High CVE-2026-7336: Use after free in WebRTC
* High CVE-2026-7337: Type Confusion in V8
* High CVE-2026-7347: Use after free in Chromoting
* High CVE-2026-7346: Inappropriate implementation in Tint
* High CVE-2026-7345: Insufficient validation of untrusted input in Feedback
* High CVE-2026-7338: Use after free in Cast
* High CVE-2026-7342: Use after free in WebView
* High CVE-2026-7341: Use after free in WebRTC
* Medium CVE-2026-7339: Heap buffer overflow in WebRTC
* Medium CVE-2026-7340: Integer overflow in ANGLE
* Medium CVE-2026-7355: Use after free in Media

---
diff --git a/cef.spec b/cef.spec
index 4fabf74..02770ca 100644
--- a/cef.spec
+++ b/cef.spec
@@ -238,7 +238,7 @@
 %global chromium_major 147
 %global chromium_branch 7727
 # Where possible, track Chromium versions already released in Fedora.
-%global chromium_minor 116
+%global chromium_minor 137
 %global chromium_version %{chromium_major}.0.%{chromium_branch}.%{chromium_minor}
 %global cef_commit 3a0fcf1e1b6249b50c96ac77c429bfefade09d96
 %global cef_branch %{chromium_branch}
@@ -1146,7 +1146,7 @@ mv %{_builddir}/cef-%{cef_commit} ./cef
 %patch -P358 -p1 -b .rust-clang_lib
 
 %if  0%{?fedora} > 41 || 0%{?rhel} > 10
-%patch -P359 -p1 -b .ftvfs-with-rustc-1.95
+%patch -P359 -p1 -b .ftbfs-with-rustc-1.95
 %endif
 
 %ifarch ppc64le

diff --git a/sources b/sources
index 56e06ad..af0fc16 100644
--- a/sources
+++ b/sources
@@ -2,4 +2,4 @@ SHA512 (3a0fcf1e1b6249b50c96ac77c429bfefade09d96.tar.gz) = 450ad00c41029796629ed
 SHA512 (rollup-linux-arm64-gnu-4.22.4.tgz) = 01d3d1a0d8b734a54ba2508dfd2a7817837577df1ce120671cc2a82ee886e915e0a19e2c965b1eb868a8b33ba69cf1a63ccd8eeea6805ff20975e0d4f1fdba03
 SHA512 (rollup-linux-powerpc64le-gnu-4.22.4.tgz) = dda5422bdc5f596d68190a53b182493c5e9b7e959f85b46785d97285a936662c852c369acb3d043f98fd5754552c003196658a4c37d2f70c91c98de1be13e83a
 SHA512 (node-v22.22.0-stripped.tar.gz) = f32a8a73063b3c78cbacf941e11dd529ebcf2618b3ba661966312e49ee9870c43a3acf256e8d331a4b0b621b16a501810c02a3ad763c75884cc250addca8e106
-SHA512 (chromium-147.0.7727.116-clean.tar.xz) = aed20a35d1877ca66846f1fa73f6f95ecb24c5c2dfed7a28c56cfb6edc55619637ffa0c047322b4ef50eea43adc5d902a68508c9b6faf51e64d4225b2785bebc
+SHA512 (chromium-147.0.7727.137-clean.tar.xz) = 29e78bdbc64c90ae1953f0fa49ac1542dcdda23c7db27232297bcc3846303760d43ea54c2f0aa1987d40087d09599a8da2cce5804ab8eb4fc0459fbce3870f34

                 reply	other threads:[~2026-09-04 17:42 UTC|newest]

Thread overview: [no followups] expand[flat|nested]  mbox.gz  Atom feed

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=178854375371.1.16044725295600983898.rpms-cef-2c254b09439b@fedoraproject.org \
    --to=than@redhat.com \
    --cc=git-commits@fedoraproject.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox