{"affected":[{"ecosystem_specific":{"binaries":[{"chromedriver":"96.0.4664.110-bp153.2.48.1","chromium":"96.0.4664.110-bp153.2.48.1"}]},"package":{"ecosystem":"SUSE:Package Hub 15 SP3","name":"chromium","purl":"pkg:rpm/suse/chromium&distro=SUSE%20Package%20Hub%2015%20SP3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"96.0.4664.110-bp153.2.48.1"}],"type":"ECOSYSTEM"}]},{"ecosystem_specific":{"binaries":[{"chromedriver":"96.0.4664.110-bp153.2.48.1","chromium":"96.0.4664.110-bp153.2.48.1"}]},"package":{"ecosystem":"openSUSE:Leap 15.3","name":"chromium","purl":"pkg:rpm/opensuse/chromium&distro=openSUSE%20Leap%2015.3"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"96.0.4664.110-bp153.2.48.1"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for chromium fixes the following issues:\n\nChromium 96.0.4664.110 (boo#1193713):\n\n* CVE-2021-4098: Insufficient data validation in Mojo\n* CVE-2021-4099: Use after free in Swiftshader\n* CVE-2021-4100: Object lifecycle issue in ANGLE\n* CVE-2021-4101: Heap buffer overflow in Swiftshader\n* CVE-2021-4102: Use after free in V8\n","id":"openSUSE-SU-2021:1600-1","modified":"2021-12-20T09:16:47Z","published":"2021-12-20T09:16:47Z","references":[{"type":"ADVISORY","url":"https://lists.opensuse.org/archives/list/security-announce@lists.opensuse.org/thread/LGS65TJIBHZIF3QKXXU62A2KR5NRUCPQ/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1193713"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-4098"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-4099"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-4100"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-4101"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2021-4102"}],"related":["CVE-2021-4098","CVE-2021-4099","CVE-2021-4100","CVE-2021-4101","CVE-2021-4102"],"summary":"Security update for chromium","upstream":["CVE-2021-4098","CVE-2021-4099","CVE-2021-4100","CVE-2021-4101","CVE-2021-4102"]}