critical
Security update for chromium
openSUSE-2026-323
This update for chromium fixes the following issues: - Chromium 153.0.8010.47 (boo#1280687): * CVE-2026-91726: Out of bounds read in WebGL * CVE-2026-91721: Use after free in Internals * CVE-2026-91749: Use after free in Workers * CVE-2026-91724: Use after free in Input * CVE-2026-91728: Integer overflow in V8 * CVE-2026-91734: Incorrect authorization in Core * CVE-2026-91727: Incorrect reference resolution in Extensions * CVE-2026-91743: Race condition in Core * CVE-2026-91744: Race condition in PlatformIntegration * CVE-2026-91712: Race condition in Extensions * CVE-2026-91748: Race condition in Extensions * CVE-2026-91720: Uninitialized resource in ANGLE * CVE-2026-91731: Type confusion in Compositing * CVE-2026-91747: Use after free in Skia * CVE-2026-91733: Improper state validation in Skia * CVE-2026-91741: Type confusion in CacheStorage * CVE-2026-91709: Type confusion in ServiceWorker * CVE-2026-91717: Missing authorization in Android * CVE-2026-91735: Incorrect authorization in WebUI * CVE-2026-91708: Race condition in Network * CVE-2026-91736: Use after free in DOM * CVE-2026-91740: Uninitialized resource in Skia * CVE-2026-91710: Use after free in WebAppInstalls * CVE-2026-91718: Use after free in Core * CVE-2026-91716: Use after free in Auth * CVE-2026-91746: Integer overflow in Compositing * CVE-2026-91729: Use after free in DigitalCredentials * CVE-2026-91737: Use after free in PDF * CVE-2026-91711: Out of bounds write in ServiceWorker * CVE-2026-91715: Type confusion in ServiceWorker * CVE-2026-91745: Use after free in V8 * CVE-2026-91723: Race condition in WebAppInstalls * CVE-2026-91732: Missing authorization in AppManifest * CVE-2026-91742: Confused deputy in PriceTracking * CVE-2026-91714: Observable discrepancy in Fonts * CVE-2026-91725: Observable discrepancy in CSS * CVE-2026-91739: Missing authorization in Transactions Platform * CVE-2026-91713: Missing authorization in Browser * CVE-2026-91738: Improper input validation in ANGLE * CVE-2026-91730: Incomplete cleanup in GetUserMedia * CVE-2026-91722: Use after free in Input * CVE-2026-91719: Code injection in XML
-
Release DateSep 18 2026
-
ReferencesBugzilla: 1280687
CVEs: CVE-2026-91708, CVE-2026-91713, CVE-2026-91747, CVE-2026-91735, CVE-2026-91724, CVE-2026-91709, CVE-2026-91748, CVE-2026-91718, CVE-2026-91740, CVE-2026-91726, CVE-2026-91732, CVE-2026-91715, CVE-2026-91742, CVE-2026-91737, CVE-2026-91711, CVE-2026-91745, CVE-2026-91731, CVE-2026-91738, CVE-2026-91733, CVE-2026-91729, CVE-2026-91736, CVE-2026-91727, CVE-2026-91720, CVE-2026-91730, CVE-2026-91710, CVE-2026-91744, CVE-2026-91717, CVE-2026-91741, CVE-2026-91723, CVE-2026-91722, CVE-2026-91734, CVE-2026-91716, CVE-2026-91725, CVE-2026-91719, CVE-2026-91721, CVE-2026-91712, CVE-2026-91749, CVE-2026-91728, CVE-2026-91714, CVE-2026-91743, CVE-2026-91746, CVE-2026-91739 -
Typesecurity
-
Severitycritical
cloud_download Downloads
SUSE Package Hub 15.7 ppc64le
-
Packageschromedriver
WebDriver for Google Chrome/Chromiumchromium153.0.8010.47-bp157.2.225.1 lock rpm
Google's open source browser project153.0.8010.47-bp157.2.225.1 lock rpm
SUSE Package Hub 15.7 s390x
-
Packages
SUSE Package Hub 15.7 x86_64
-
Packageschromedriver
WebDriver for Google Chrome/Chromiumchromium153.0.8010.47-bp157.2.225.1 lock rpm
Google's open source browser project153.0.8010.47-bp157.2.225.1 lock rpm
SUSE Package Hub 15.7 aarch64
-
Packageschromedriver
WebDriver for Google Chrome/Chromiumchromium153.0.8010.47-bp157.2.225.1 lock rpm
Google's open source browser project153.0.8010.47-bp157.2.225.1 lock rpm