Security update for chromium
Chromium was updated to fix:
- CVE-2025-54874 fix missing error check in openjpeg (bsc#1247661)
Chromium 139.0.7258.66 (boo#1247664):
* CVE-2025-8576: Use after free in Extensions
* CVE-2025-8577: Inappropriate implementation in Picture In Picture
* CVE-2025-8578: Use after free in Cast
* CVE-2025-8579: Inappropriate implementation in Gemini Live in Chrome
* CVE-2025-8580: Inappropriate implementation in Filesystems
* CVE-2025-8581: Inappropriate implementation in Extensions
* CVE-2025-8582: Insufficient validation of untrusted input in DOM
* CVE-2025-8583: Inappropriate implementation in Permissions
-
Submitted by
Ruediger Oertel (oertel)
Fixed bugs
bnc#1247661
VUL-0: CVE-2025-54874: chromium: openjpeg: missing error check can lead to the use of an uninitialized pointer and cause an out-of-bounds heap
bnc#1247664
VUL-0: chromium: release 139.0.7258.66