Overview

Request 742206 superseded

chromium 78.0.3904.70 bsc#1154806:
* CVE-2019-13699: Use-after-free in media
* CVE-2019-13700: Buffer overrun in Blink
* CVE-2019-13701: URL spoof in navigation
* CVE-2019-13702: Privilege elevation in Installer
* CVE-2019-13703: URL bar spoofing
* CVE-2019-13704: CSP bypass
* CVE-2019-13705: Extension permission bypass
* CVE-2019-13706: Out-of-bounds read in PDFium
* CVE-2019-13707: File storage disclosure
* CVE-2019-13708: HTTP authentication spoof
* CVE-2019-13709: File download protection bypass
* CVE-2019-13710: File download protection bypass
* CVE-2019-13711: Cross-context information leak
* CVE-2019-15903: Buffer overflow in expat
* CVE-2019-13713: Cross-origin data leak
* CVE-2019-13714: CSS injection
* CVE-2019-13715: Address bar spoofing
* CVE-2019-13716: Service worker state error
* CVE-2019-13717: Notification obscured
* CVE-2019-13718: IDN spoof
* CVE-2019-13719: Notification obscured


Andreas Stieger's avatar

@msmeissn in boo#1154806 @scarabeus_iv noted problem with submitting this large package. Could the review bots suffer from the same problem? Can you check?


Leap Reviewbot's avatar

home:AndreasStieger:branches:OBS_Maintained:chromium/chromium.openSUSE_Backports_SLE-15-SP1_Update@c33bd7758efbe585271e9ee74a88b7f0 -> openSUSE:Backports:SLE-15-SP1:Update/chromium

expected origin is 'openSUSE:Leap:15.1' (changed)

home:AndreasStieger:branches:OBS_Maintained:chromium/chromium.openSUSE_Backports_SLE-15_Update@c0c9638cd37a71b39d0b9551e3bd5745 -> openSUSE:Backports:SLE-15:Update/chromium

expected origin is 'openSUSE:Leap:15.0:Update' (changed)

home:AndreasStieger:branches:OBS_Maintained:chromium/chromium.openSUSE_Leap_15.0_Update@01caa6d83fc5488c3a4e433a8b0f50ee -> openSUSE:Leap:15.0:Update/chromium

expected origin is 'openSUSE:Factory' (changed)

sr#742853 to openSUSE:Factory has different sources

home:AndreasStieger:branches:OBS_Maintained:chromium/chromium.openSUSE_Leap_15.1_Update@71f5e4777c43d6a0b7017da1da4bf3cb -> openSUSE:Leap:15.1:Update/chromium

expected origin is 'openSUSE:Leap:15.0:Update' (changed)

home:AndreasStieger:branches:OBS_Maintained:chromium/re2.openSUSE_Backports_SLE-15-SP1_Update@16cba5aabf88642adf87e8560f6cf962 -> openSUSE:Backports:SLE-15-SP1:Update/re2

expected origin is 'openSUSE:Leap:15.0:Update' (changed)

home:AndreasStieger:branches:OBS_Maintained:chromium/re2.openSUSE_Backports_SLE-15_Update@44069d239ac03acaddd8032d6a333b39 -> openSUSE:Backports:SLE-15:Update/re2

expected origin is 'openSUSE:Leap:15.0' (changed)

home:AndreasStieger:branches:OBS_Maintained:chromium/re2.openSUSE_Leap_15.0_Update@18834f5e6aa3d13d76b1df3688210121 -> openSUSE:Leap:15.0:Update/re2

expected origin is 'openSUSE:Factory' (changed)

submission source found in origin (openSUSE:Factory)

home:AndreasStieger:branches:OBS_Maintained:chromium/re2.openSUSE_Leap_15.1_Update@9593c0d94067458d5eddf482b2055834 -> openSUSE:Leap:15.1:Update/re2

expected origin is 'openSUSE:Leap:15.0:Update' (changed)

Request History
Andreas Stieger's avatar

AndreasStieger created request

chromium 78.0.3904.70 bsc#1154806:
* CVE-2019-13699: Use-after-free in media
* CVE-2019-13700: Buffer overrun in Blink
* CVE-2019-13701: URL spoof in navigation
* CVE-2019-13702: Privilege elevation in Installer
* CVE-2019-13703: URL bar spoofing
* CVE-2019-13704: CSP bypass
* CVE-2019-13705: Extension permission bypass
* CVE-2019-13706: Out-of-bounds read in PDFium
* CVE-2019-13707: File storage disclosure
* CVE-2019-13708: HTTP authentication spoof
* CVE-2019-13709: File download protection bypass
* CVE-2019-13710: File download protection bypass
* CVE-2019-13711: Cross-context information leak
* CVE-2019-15903: Buffer overflow in expat
* CVE-2019-13713: Cross-origin data leak
* CVE-2019-13714: CSS injection
* CVE-2019-13715: Address bar spoofing
* CVE-2019-13716: Service worker state error
* CVE-2019-13717: Notification obscured
* CVE-2019-13718: IDN spoof
* CVE-2019-13719: Notification obscured


Factory Auto's avatar

factory-auto accepted review

openSUSE:Backports:SLE-15-SP1:Update/chromium.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: Check
script succeeded
openSUSE:Backports:SLE-15-SP1:Update/re2.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: Check
script succeeded
openSUSE:Backports:SLE-15:Update/chromium.openSUSE_Backports_SLE-15_Update::maintenance_incident: Check
script succeeded
openSUSE:Backports:SLE-15:Update/re2.openSUSE_Backports_SLE-15_Update::maintenance_incident: Check
script succeeded
openSUSE:Leap:15.0:Update/chromium.openSUSE_Leap_15.0_Update::maintenance_incident: Check
script succeeded
openSUSE:Leap:15.0:Update/re2.openSUSE_Leap_15.0_Update::maintenance_incident: Check
script succeeded
openSUSE:Leap:15.1:Update/chromium.openSUSE_Leap_15.1_Update::maintenance_incident: Check
script succeeded
openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: Check
script succeeded


Maintenance Bot's avatar

maintbot added factory-source as a reviewer

openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: null


Maintenance Bot's avatar

maintbot added network:chromium as a reviewer

openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: Submission
for None by someone who is not maintainer in the devel project (network:chromium).
Please review


Maintenance Bot's avatar

maintbot added chromium as a reviewer

openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: Submission
for chromium by someone who is not maintainer in the devel project (network:chromium).
Please review


Maintenance Bot's avatar

maintbot accepted review

openSUSE:Backports:SLE-15-SP1:Update/chromium.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: ok
openSUSE:Backports:SLE-15-SP1:Update/re2.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: ok
openSUSE:Backports:SLE-15:Update/chromium.openSUSE_Backports_SLE-15_Update::maintenance_incident: ok
openSUSE:Backports:SLE-15:Update/re2.openSUSE_Backports_SLE-15_Update::maintenance_incident: ok
openSUSE:Leap:15.0:Update/chromium.openSUSE_Leap_15.0_Update::maintenance_incident: ok
openSUSE:Leap:15.0:Update/re2.openSUSE_Leap_15.0_Update::maintenance_incident: ok
openSUSE:Leap:15.1:Update/chromium.openSUSE_Leap_15.1_Update::maintenance_incident: ok
openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: ok


Tomáš Chvátal's avatar

scarabeus_iv accepted review


Tomáš Chvátal's avatar

scarabeus_iv accepted review


Source in Factory Checker's avatar

factory-source added backports-reviewers as a reviewer

openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: Automated
review failed. Needs fallback reviewer.


Source in Factory Checker's avatar

factory-source accepted review

openSUSE:Backports:SLE-15-SP1:Update/chromium.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Backports:SLE-15-SP1:Update/re2.openSUSE_Backports_SLE-15-SP1_Update::maintenance_incident: ok
openSUSE:Backports:SLE-15:Update/chromium.openSUSE_Backports_SLE-15_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Backports:SLE-15:Update/re2.openSUSE_Backports_SLE-15_Update::maintenance_incident: ok
openSUSE:Leap:15.0:Update/chromium.openSUSE_Leap_15.0_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Leap:15.0:Update/re2.openSUSE_Leap_15.0_Update::maintenance_incident: ok
openSUSE:Leap:15.1:Update/chromium.openSUSE_Leap_15.1_Update::maintenance_incident: the
package needs to be accepted in openSUSE:Factory or openSUSE:Factory or openSUSE:Factory
or openSUSE:Factory first
openSUSE:Leap:15.1:Update/re2.openSUSE_Leap_15.1_Update::maintenance_incident: ok


Andreas Stieger's avatar

AndreasStieger superseded request

take newer request

openSUSE Build Service is sponsored by