SUSE alert openSUSE-SU-2026:0004-1 (chromium, noopenh264)
| From: | maintenance@opensuse.org | |
| To: | security-announce@lists.opensuse.org | |
| Subject: | openSUSE-SU-2026:0004-1: important: Security update for chromium, noopenh264 | |
| Date: | Fri, 09 Jan 2026 15:05:43 +0100 | |
| Message-ID: | <20260109140543.D060BFB9C@maintenance.suse.de> | |
| Archive-link: | Article |
openSUSE Security Update: Security update for chromium, noopenh264 ______________________________________________________________________________ Announcement ID: openSUSE-SU-2026:0004-1 Rating: important References: #1256067 Cross-References: CVE-2026-0628 Affected Products: openSUSE Backports SLE-15-SP7 ______________________________________________________________________________ An update that fixes one vulnerability is now available. Description: This update for chromium, noopenh264 fixes the following issues: Changes in chromium: - Chromium 143.0.7499.192 (boo#1256067): * CVE-2026-0628: Insufficient policy enforcement in WebView tag - Chromium 143.0.7499.169 (stable released 2025-12-18) * no cve listed yet Changes in noopenh264: - Introducing the package. Patch Instructions: To install this openSUSE Security Update use the SUSE recommended installation methods like YaST online_update or "zypper patch". Alternatively you can run the command listed for your product: - openSUSE Backports SLE-15-SP7: zypper in -t patch openSUSE-2026-4=1 Package List: - openSUSE Backports SLE-15-SP7 (aarch64 i586 ppc64le s390x x86_64): libopenh264-8-2.6.0~noopenh264-bp157.2.1 libopenh264-8-debuginfo-2.6.0~noopenh264-bp157.2.1 libopenh264-devel-2.6.0~noopenh264-bp157.2.1 noopenh264-debugsource-2.6.0~noopenh264-bp157.2.1 - openSUSE Backports SLE-15-SP7 (aarch64 ppc64le x86_64): chromedriver-143.0.7499.192-bp157.2.97.1 chromium-143.0.7499.192-bp157.2.97.1 - openSUSE Backports SLE-15-SP7 (aarch64_ilp32): libopenh264-8-64bit-2.6.0~noopenh264-bp157.2.1 libopenh264-8-64bit-debuginfo-2.6.0~noopenh264-bp157.2.1 - openSUSE Backports SLE-15-SP7 (x86_64): libopenh264-8-32bit-2.6.0~noopenh264-bp157.2.1 libopenh264-8-32bit-debuginfo-2.6.0~noopenh264-bp157.2.1 References: https://www.suse.com/security/cve/CVE-2026-0628.html https://bugzilla.suse.com/1256067
