{"id":"openSUSE-SU-2026:21363-1","summary":"Security update for chromium","details":"This update for chromium fixes the following issues:\n\nChanges in chromium:\n\n- Chromium 150.0.7871.124 (boo#1271415):\n  * CVE-2026-15764: Use after free in Ozone\n  * CVE-2026-15765: Use after free in Ozone\n  * CVE-2026-15766: Uninitialized Use in Skia\n  * CVE-2026-15767: Heap buffer overflow in libyuv\n  * CVE-2026-15768: Insufficient policy enforcement in HTML-in-Canvas\n  * CVE-2026-15769: Insufficient validation of untrusted input in Linux Toolkit Theming\n  * CVE-2026-15770: Uninitialized Use in V8\n  * CVE-2026-15771: Insufficient validation of untrusted input in Media\n  * CVE-2026-15772: Use after free in GPU\n  * CVE-2026-15773: Use after free in Core\n  * CVE-2026-15774: Use after free in Skia\n  * CVE-2026-15775: Insufficient policy enforcement in V8\n  * CVE-2026-15776: Type Confusion in V8\n  * CVE-2026-15777: Use after free in UI\n  * CVE-2026-15778: Insufficient validation of untrusted input in Navigation\n","modified":"2026-09-02T14:00:13.290737247Z","published":"2026-07-16T21:56:42Z","withdrawn":"2026-09-02T14:00:13.290737105Z","related":["CVE-2026-15764","CVE-2026-15765","CVE-2026-15766","CVE-2026-15767","CVE-2026-15768","CVE-2026-15769","CVE-2026-15770","CVE-2026-15771","CVE-2026-15772","CVE-2026-15773","CVE-2026-15774","CVE-2026-15775","CVE-2026-15776","CVE-2026-15777","CVE-2026-15778"],"upstream":["CVE-2026-15764","CVE-2026-15765","CVE-2026-15766","CVE-2026-15767","CVE-2026-15768","CVE-2026-15769","CVE-2026-15770","CVE-2026-15771","CVE-2026-15772","CVE-2026-15773","CVE-2026-15774","CVE-2026-15775","CVE-2026-15776","CVE-2026-15777","CVE-2026-15778"],"references":[{"type":"ADVISORY"},{"type":"REPORT","url":"https://bugzilla.suse.com/1271415"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15764"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15765"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15766"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15767"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15768"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15769"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15770"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15771"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15772"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15773"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15774"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15775"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15776"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15777"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2026-15778"}],"affected":[{"package":{"name":"chromium","ecosystem":"openSUSE:Leap 16.0","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2016.0"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"150.0.7871.124-bp160.1.1"}]}],"ecosystem_specific":{"binaries":[{"chromium":"150.0.7871.124-bp160.1.1","chromedriver":"150.0.7871.124-bp160.1.1"}]},"database_specific":{"source":"https://ftp.suse.com/pub/projects/security/osv/openSUSE-SU-2026:21363-1.json"}}],"schema_version":"1.7.5"}