public inbox for git-commits@fedoraproject.org
help / color / mirror / Atom feed
* [rpms/cef] rawhide: - Update to 147.0.7727.137
@ 2026-09-04 17:42 Than Ngo
0 siblings, 0 replies; only message in thread
From: Than Ngo @ 2026-09-04 17:42 UTC (permalink / raw)
To: git-commits
A new commit has been pushed.
Repo : rpms/cef
Branch : rawhide
Commit : 2c254b09439b4d55518a37d1ad08d8061a00e31d
Author : Than Ngo <than@redhat.com>
Date : 2026-09-04T17:42:12+00:00
Stats : +3/-3 in 2 file(s)
URL : https://src.fedoraproject.org/rpms/cef/c/2c254b09439b4d55518a37d1ad08d8061a00e31d?branch=rawhide
Log:
- Update to 147.0.7727.137
* Critical CVE-2026-7363: Use after free in Canvas
* Critical CVE-2026-7361: Use after free in iOS
* Critical CVE-2026-7344: Use after free in Accessibility
* Critical CVE-2026-7343: Use after free in Views
* High CVE-2026-7333: Use after free in GPU
* High CVE-2026-7360: Insufficient validation of untrusted input in Compositing
* High CVE-2026-7359: Use after free in ANGLE
* High CVE-2026-7358: Use after free in Animation
* High CVE-2026-7334: Use after free in Views
* High CVE-2026-7357: Use after free in GPU
* High CVE-2026-7356: Use after free in Navigation
* High CVE-2026-7354: Out of bounds read and write in Angle
* High CVE-2026-7353: Heap buffer overflow in Skia
* High CVE-2026-7352: Use after free in Media
* High CVE-2026-7351: Race in MHTML
* High CVE-2026-7350: Use after free in WebMIDI
* High CVE-2026-7349: Use after free in Cast
* High CVE-2026-7348: Use after free in Codecs
* High CVE-2026-7335: Use after free in media
* High CVE-2026-7336: Use after free in WebRTC
* High CVE-2026-7337: Type Confusion in V8
* High CVE-2026-7347: Use after free in Chromoting
* High CVE-2026-7346: Inappropriate implementation in Tint
* High CVE-2026-7345: Insufficient validation of untrusted input in Feedback
* High CVE-2026-7338: Use after free in Cast
* High CVE-2026-7342: Use after free in WebView
* High CVE-2026-7341: Use after free in WebRTC
* Medium CVE-2026-7339: Heap buffer overflow in WebRTC
* Medium CVE-2026-7340: Integer overflow in ANGLE
* Medium CVE-2026-7355: Use after free in Media
---
diff --git a/cef.spec b/cef.spec
index 4fabf74..02770ca 100644
--- a/cef.spec
+++ b/cef.spec
@@ -238,7 +238,7 @@
%global chromium_major 147
%global chromium_branch 7727
# Where possible, track Chromium versions already released in Fedora.
-%global chromium_minor 116
+%global chromium_minor 137
%global chromium_version %{chromium_major}.0.%{chromium_branch}.%{chromium_minor}
%global cef_commit 3a0fcf1e1b6249b50c96ac77c429bfefade09d96
%global cef_branch %{chromium_branch}
@@ -1146,7 +1146,7 @@ mv %{_builddir}/cef-%{cef_commit} ./cef
%patch -P358 -p1 -b .rust-clang_lib
%if 0%{?fedora} > 41 || 0%{?rhel} > 10
-%patch -P359 -p1 -b .ftvfs-with-rustc-1.95
+%patch -P359 -p1 -b .ftbfs-with-rustc-1.95
%endif
%ifarch ppc64le
diff --git a/sources b/sources
index 56e06ad..af0fc16 100644
--- a/sources
+++ b/sources
@@ -2,4 +2,4 @@ SHA512 (3a0fcf1e1b6249b50c96ac77c429bfefade09d96.tar.gz) = 450ad00c41029796629ed
SHA512 (rollup-linux-arm64-gnu-4.22.4.tgz) = 01d3d1a0d8b734a54ba2508dfd2a7817837577df1ce120671cc2a82ee886e915e0a19e2c965b1eb868a8b33ba69cf1a63ccd8eeea6805ff20975e0d4f1fdba03
SHA512 (rollup-linux-powerpc64le-gnu-4.22.4.tgz) = dda5422bdc5f596d68190a53b182493c5e9b7e959f85b46785d97285a936662c852c369acb3d043f98fd5754552c003196658a4c37d2f70c91c98de1be13e83a
SHA512 (node-v22.22.0-stripped.tar.gz) = f32a8a73063b3c78cbacf941e11dd529ebcf2618b3ba661966312e49ee9870c43a3acf256e8d331a4b0b621b16a501810c02a3ad763c75884cc250addca8e106
-SHA512 (chromium-147.0.7727.116-clean.tar.xz) = aed20a35d1877ca66846f1fa73f6f95ecb24c5c2dfed7a28c56cfb6edc55619637ffa0c047322b4ef50eea43adc5d902a68508c9b6faf51e64d4225b2785bebc
+SHA512 (chromium-147.0.7727.137-clean.tar.xz) = 29e78bdbc64c90ae1953f0fa49ac1542dcdda23c7db27232297bcc3846303760d43ea54c2f0aa1987d40087d09599a8da2cce5804ab8eb4fc0459fbce3870f34
^ permalink raw reply related [flat|nested] only message in thread
only message in thread, other threads:[~2026-09-04 17:42 UTC | newest]
Thread overview: (only message) (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2026-09-04 17:42 [rpms/cef] rawhide: - Update to 147.0.7727.137 Than Ngo
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox