./www/chromium, Open source web browser

[ CVSweb ] [ Homepage ] [ RSS ] [ Required by ]


Branch: CURRENT, Version: 151.0.7922.173, Package name: chromium-151.0.7922.173, Maintainer: kikadf

Chromium is an open-source browser project that aims to build a
safer, faster, and more stable way for all Internet users to
experience the web.



Package options: sunaudio

Master sites:


Version history: (Expand)


CVS history: (Expand)


   2026-08-22 17:19:19 by Benny Siegert | Files touched by this commit (211) | Package updated
Log message:
Revbump all Go packages after go126 update
   2026-08-21 17:04:58 by Robert Bagdan | Files touched by this commit (3) | Package updated
Log message:
chromium: update to 151.0.7922.173

* 151.0.7922.173
This update includes 7 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][522819252] Critical CVE-2026-76017: Use after free in Chromoting. Reported \ 
by Google on 2026-06-11
[N/A][513757918] High CVE-2026-76018: Privilege elevation in Import. Reported by \ 
Google on 2026-05-16
[TBD][539032888] High CVE-2026-76019: Incorrect authorization in Workers. \ 
Reported by Anonymous on 2026-07-26
[TBD][541837151] High CVE-2026-76020: Race condition in V8. Reported by \ 
Salvatore Gulizia (nickname: Serotav) on 2026-08-03
[N/A][541854084] High CVE-2026-76021: Use after free in DOM. Reported by Google \ 
BigSleep@Grape on 2026-08-02
[TBD][543798025] High CVE-2026-76022: Buffer overflow in Network. Reported by \ 
0xAlessandro on 2026-08-07
[TBD][545124048] High CVE-2026-76023: Improper resource control in Linux Toolkit \ 
Theming. Reported by Keita Sode and Daisuke Hatakeyama of SYZD Research on \ 
2026-08-11

* 151.0.7922.169
This update includes 15 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][534923522] Critical CVE-2026-76034: Buffer overflow in WebGL. Reported by \ 
Google on 2026-07-15
[N/A][540087398] Critical CVE-2026-76036: Buffer overflow in Dawn. Reported by \ 
Google on 2026-07-28
[N/A][516715010] High CVE-2026-76033: Inappropriate implementation in CORS. \ 
Reported by Google on 2026-05-26
[N/A][517612295] High CVE-2026-76037: Link following in CredentialProvider. \ 
Reported by Google on 2026-05-28
[N/A][522732244] High CVE-2026-76044: Race condition in USB. Reported by Google \ 
on 2026-06-11
[N/A][525167753] High CVE-2026-76039: Incorrect reference resolution in Core. \ 
Reported by Google on 2026-06-18
[N/A][534862220] High CVE-2026-76040: Use after free in Browser. Reported by \ 
Google on 2026-07-14
[N/A][536439844] High CVE-2026-76035: Inappropriate implementation in Media. \ 
Reported by Google on 2026-07-19
[N/A][536460270] High CVE-2026-76042: Use of uninitialized resource in GPU. \ 
Reported by Google on 2026-07-19
[N/A][536581050] High CVE-2026-76046: Buffer overflow in ANGLE. Reported by \ 
Google on 2026-07-19
[TBD][539350801] High CVE-2026-76043: Incorrect calculation in V8. Reported by \ 
Raghav Maheshwari on 2026-07-27
[N/A][540027341] High CVE-2026-76041: Information leak in Skia. Reported by \ 
Google on 2026-07-28
[TBD][541251902] High CVE-2026-76047: Type confusion in V8. Reported by \ 
ywatanabee on 2026-07-31
[TBD][541926503] High CVE-2026-76038: Type confusion in V8. Reported by \ 
un3xploitable && GF on 2026-08-03
[TBD][543082390] High CVE-2026-76045: Use after free in WebGL. Reported by \ 
OpenAI Codex Security (amyb) on 2026-08-05
   2026-08-15 14:53:40 by Benny Siegert | Files touched by this commit (211) | Package updated
Log message:
Revbump all Go packages after Go 1.26 update
   2026-08-14 18:37:52 by Robert Bagdan | Files touched by this commit (2) | Package updated
Log message:
chromium: update to 151.0.7922.137

* 151.0.7922.137
This update includes 5 security fixes. Please see the Chrome Security Page for \ 
more information.

[$500][535000102] High CVE-2026-19556: Use after free in V8. Reported by Jihyeon \ 
Jeong (Compsec Lab, Seoul National University / Research Intern) on 2026-07-15
[N/A][534867485] High CVE-2026-19557: Use after free in TabStrip. Reported by \ 
Google on 2026-07-14
[N/A][536676756] High CVE-2026-19558: Use after free in Extensions. Reported by \ 
@bean5oup on 2026-07-20
[N/A][540100588] High CVE-2026-19559: Use after free in HTML. Reported by Google \ 
on 2026-07-28
[N/A][540482895] High CVE-2026-19560: Use after free in Blink. Reported by \ 
WinD39 - Huynh Dinh Vu on 2026-07-30
   2026-08-09 16:41:09 by Robert Bagdan | Files touched by this commit (1) | Package updated
Log message:
chromium: fix distinfo, update esbuild source
   2026-07-28 13:41:54 by Robert Bagdan | Files touched by this commit (2) | Package updated
Log message:
www/chromium: update to 150.0.7871.186

* 150.0.7871.186
This update includes 4 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][518237034] High CVE-2026-16807: Out of bounds write in Codecs. Reported by \ 
Google on 2026-05-30
[N/A][522064153] High CVE-2026-16806: Use after free in WebMCP. Reported by \ 
Google on 2026-06-10
[N/A][523292588] High CVE-2026-16805: Use after free in Blink. Reported by \ 
Google on 2026-06-12
[N/A][524721670] High CVE-2026-16804: Use after free in Input. Reported by \ 
Google on 2026-06-16

* 150.0.7871.181
This update includes 12 security fixes. Below, we highlight fixes that were \ 
contributed by
external researchers. Please see the Chrome Security Page for more information.

[$500][527930356] High CVE-2026-16420: Type Confusion in WebAudio. Reported by \ 
Found by XBOW and triaged by Brendan Dolan-Gavitt on 2026-06-26
[$500][528276487] High CVE-2026-16421: Inappropriate implementation in WebAudio. \ 
Reported by Found by XBOW and triaged by Brendan Dolan-Gavitt on 2026-06-26
[N/A][517359779] High CVE-2026-16413: Out of bounds write in ANGLE. Reported by \ 
Google on 2026-05-28
[N/A][517651910] High CVE-2026-16414: Insufficient validation of untrusted input \ 
in Chromecast. Reported by Google on 2026-05-28
[N/A][519244446] High CVE-2026-16415: Insufficient validation of untrusted input \ 
in Extensions. Reported by Google on 2026-06-02
[N/A][520172356] High CVE-2026-16416: Integer overflow in Chromecast. Reported \ 
by Google on 2026-06-05
[N/A][521491024] High CVE-2026-16417: Uninitialized Use in Skia. Reported by \ 
Google on 2026-06-08
[N/A][522125255] High CVE-2026-16418: Stack buffer overflow in V8. Reported by \ 
Google on 2026-06-10
[N/A][523435970] High CVE-2026-16419: Out of bounds read and write in ANGLE. \ 
Reported by Google on 2026-06-13
[N/A][533515002] High CVE-2026-16422: Insufficient validation of untrusted input \ 
in Certificate. Reported by Google on 2026-07-10
[N/A][534582496] High CVE-2026-16423: Use after free in UI. Reported by Google \ 
on 2026-07-14
[N/A][534858939] High CVE-2026-16424: Use after free in GPU. Reported by Google \ 
on 2026-07-14
   2026-07-20 15:53:51 by Robert Bagdan | Files touched by this commit (3) | Package updated
Log message:
www/chromium: update to 150.0.7871.128

* 150.0.7871.128
This update includes 7 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][516987782] Critical CVE-2026-15899: Use after free in CameraCapture. \ 
Reported by Google on 2026-05-27
[N/A][523750584] Critical CVE-2026-15900: Use after free in GPU. Reported by \ 
Google on 2026-06-14
[N/A][533446300] Critical CVE-2026-15901: Use after free in Network. Reported by \ 
Google on 2026-07-10
[N/A][522436154] High CVE-2026-15902: Use after free in Cast. Reported by Google \ 
on 2026-06-10
[TBD][531503216] High CVE-2026-15903: Out of bounds read and write in V8. \ 
Reported by OpenAI Codex Security (amyb) on 2026-07-06
[N/A][532925350] High CVE-2026-15904: Use after free in Ozone. Reported by \ 
Google on 2026-07-09
[N/A][532970574] High CVE-2026-15905: Use after free in Aura. Reported by Google \ 
on 2026-07-09

* 150.0.7871.124
This update includes 15 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][517100492] Critical CVE-2026-15764: Use after free in Ozone. Reported by \ 
Google on 2026-05-27
[N/A][518007484] Critical CVE-2026-15765: Use after free in Ozone. Reported by \ 
Google on 2026-05-29
[N/A][514010477] High CVE-2026-15766: Uninitialized Use in Skia. Reported by \ 
Google on 2026-05-17
[N/A][514748734] High CVE-2026-15767: Heap buffer overflow in libyuv. Reported \ 
by Google on 2026-05-19
[N/A][517931625] High CVE-2026-15768: Insufficient policy enforcement in \ 
HTML-in-Canvas. Reported by Google on 2026-05-29
[N/A][519731111] High CVE-2026-15769: Insufficient validation of untrusted input \ 
in Linux Toolkit Theming. Reported by Google on 2026-06-03
[N/A][524792614] High CVE-2026-15770: Uninitialized Use in V8. Reported by \ 
Google on 2026-06-17
[N/A][525177160] High CVE-2026-15771: Insufficient validation of untrusted input \ 
in Media. Reported by Google on 2026-06-18
[N/A][525317502] High CVE-2026-15772: Use after free in GPU. Reported by Google \ 
on 2026-06-18
[TBD][527676561] High CVE-2026-15773: Use after free in Core. Reported by \ 
xinchaotian of Microsoft on 2026-06-25
[N/A][530646115] High CVE-2026-15774: Use after free in Skia. Reported by Google \ 
on 2026-07-03
[TBD][531319201] High CVE-2026-15775: Insufficient policy enforcement in V8. \ 
Reported by wang1r923096443@gmail.com on 2026-07-05
[TBD][532595489] High CVE-2026-15776: Type Confusion in V8. Reported by \ 
Salvatore Gulizia (nickname: Serotav) on 2026-07-08
[N/A][532929679] High CVE-2026-15777: Use after free in UI. Reported by Google \ 
on 2026-07-09
[N/A][513795122] Medium CVE-2026-15778: Insufficient validation of untrusted \ 
input in Navigation. Reported by Google on 2026-05-16

* 150.0.7871.114
This update includes 27 security fixes. Please see the Chrome Security Page for \ 
more information.

[N/A][518006275] Critical CVE-2026-15112: Use after free in Ozone. Reported by \ 
Google on 2026-05-29
[N/A][524045160] Critical CVE-2026-15129: Use after free in Views. Reported by \ 
Google on 2026-06-15
[$500][527385397] High CVE-2026-15132: Uninitialized Use in V8. Reported by \ 
Pierre Langlois from Arm on 2026-06-24
[$500][527406824] High CVE-2026-15133: Use after free in InterestGroups. \ 
Reported by Jihyeon Jeong (Compsec Lab, Seoul National University / Research \ 
Intern) on 2026-06-24
[N/A][515443146] High CVE-2026-15108: Integer overflow in Extensions API. \ 
Reported by Google on 2026-05-21
[N/A][516899138] High CVE-2026-15109: Uninitialized Use in ANGLE. Reported by \ 
Google on 2026-05-26
[N/A][516948486] High CVE-2026-15110: Use after free in Extensions. Reported by \ 
Google on 2026-05-27
[N/A][517508651] High CVE-2026-15111: Use after free in Views. Reported by \ 
Google on 2026-05-28
[N/A][520540744] High CVE-2026-15113: Use after free in Autofill. Reported by \ 
Google on 2026-06-05
[N/A][520565945] High CVE-2026-15114: Out of bounds read and write in Codecs. \ 
Reported by Google on 2026-06-06
[N/A][520576676] High CVE-2026-15115: Insufficient validation of untrusted input \ 
in WebAppInstalls. Reported by Google on 2026-06-06
[N/A][522092013] High CVE-2026-15116: Use after free in Actor. Reported by \ 
Google on 2026-06-10
[N/A][522568496] High CVE-2026-15117: Use after free in Payments. Reported by \ 
Google on 2026-06-11
[N/A][523238265] High CVE-2026-15118: Use after free in Input. Reported by \ 
Google on 2026-06-12
[N/A][523505418] High CVE-2026-15119: Inappropriate implementation in \ 
GetUserMedia. Reported by Google on 2026-06-13
[N/A][523609602] High CVE-2026-15120: Use after free in Core. Reported by Google \ 
on 2026-06-13
[N/A][523712556] High CVE-2026-15121: Use after free in WebRTC. Reported by \ 
Google on 2026-06-14
[N/A][523717219] High CVE-2026-15122: Insufficient validation of untrusted input \ 
in Codecs. Reported by Google on 2026-06-14
[N/A][523729553] High CVE-2026-15123: Insufficient data validation in DOM. \ 
Reported by Google on 2026-06-14
[N/A][523735038] High CVE-2026-15124: Insufficient policy enforcement in \ 
Passwords. Reported by Google on 2026-06-14
[N/A][523737685] High CVE-2026-15125: Inappropriate implementation in Forms. \ 
Reported by Google on 2026-06-14
[N/A][523748081] High CVE-2026-15126: Use after free in Forms. Reported by \ 
Google on 2026-06-14
[N/A][523752265] High CVE-2026-15127: Inappropriate implementation in WebGL. \ 
Reported by Google on 2026-06-14
[N/A][523756329] High CVE-2026-15128: Inappropriate implementation in Forms. \ 
Reported by Google on 2026-06-14
[N/A][526541544] High CVE-2026-15130: Insufficient policy enforcement in \ 
Navigation. Reported by Google on 2026-06-22
[$2000][503553615] Medium CVE-2026-15107: Use after free in IndexedDB. Reported \ 
by zh1x1an1221 of Ant Group Tianqiong Security Lab on 2026-04-17
[N/A][526542464] Medium CVE-2026-15131: Insufficient data validation in \ 
Navigation. Reported by Google on 2026-06-22
   2026-07-13 06:36:42 by Thomas Klausner | Files touched by this commit (846)
Log message:
*: recursive bump for libmpg123 dependency in lame