OPENSUSE-SU-2026:20775-1
Vulnerability from csaf_opensuse - Published: 2026-05-23 05:38 - Updated: 2026-05-23 05:38Summary
Security update for chromium
Severity
Critical
Notes
Title of the patch: Security update for chromium
Description of the patch: This update for chromium fixes the following issues:
Changes in chromium:
- Chromium 148.0.7778.178 (boo#1265848)
* CVE-2026-9111: Use after free in WebRTC
* CVE-2026-9110: Inappropriate implementation in UI
* CVE-2026-9112: Use after free in GPU
* CVE-2026-9113: Out of bounds read in GPU
* CVE-2026-9114: Use after free in QUIC
* CVE-2026-9115: Insufficient policy enforcement in Service Worker
* CVE-2026-9116: Insufficient policy enforcement in ServiceWorker
* CVE-2026-9117: Type Confusion in GFX
* CVE-2026-9118: Use after free in XR
* CVE-2026-9119: Heap buffer overflow in WebRTC
* CVE-2026-9120: Use after free in WebRTC
* CVE-2026-9126: Use after free in DOM
* CVE-2026-9121: Out of bounds read in GPU
* CVE-2026-9122: Out of bounds read in GPU
* CVE-2026-9123: Heap buffer overflow in Chromecast
* CVE-2026-9124: Insufficient validation of untrusted input in Input
- add system-wide chromium.conf as in fedora package
enable several features by default and disable ai features
allow to override via setting CHROMIUM_USER_FLAGS
Patchnames: openSUSE-Leap-16.0-packagehub-266
Terms of use: CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).
Affected products
Recommended
6 products
| Product | Identifier | Version | Remediation |
|---|---|---|---|
| Unresolved product id: openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64 | — |
Vendor Fix
|
|
| Unresolved product id: openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le | — |
Vendor Fix
|
|
| Unresolved product id: openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64 | — |
Vendor Fix
|
|
| Unresolved product id: openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64 | — |
Vendor Fix
|
|
| Unresolved product id: openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le | — |
Vendor Fix
|
|
| Unresolved product id: openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64 | — |
Vendor Fix
|
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
critical
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
Affected products
Recommended
6 products, the same list as for
CVE-2026-8509
Threats
Impact
important
References
288 references
{
"document": {
"aggregate_severity": {
"namespace": "https://www.suse.com/support/security/rating/",
"text": "critical"
},
"category": "csaf_security_advisory",
"csaf_version": "2.0",
"distribution": {
"text": "Copyright 2024 SUSE LLC. All rights reserved.",
"tlp": {
"label": "WHITE",
"url": "https://www.first.org/tlp/"
}
},
"lang": "en",
"notes": [
{
"category": "summary",
"text": "Security update for chromium",
"title": "Title of the patch"
},
{
"category": "description",
"text": "This update for chromium fixes the following issues:\n\nChanges in chromium:\n\n- Chromium 148.0.7778.178 (boo#1265848)\n * CVE-2026-9111: Use after free in WebRTC\n * CVE-2026-9110: Inappropriate implementation in UI\n * CVE-2026-9112: Use after free in GPU\n * CVE-2026-9113: Out of bounds read in GPU\n * CVE-2026-9114: Use after free in QUIC\n * CVE-2026-9115: Insufficient policy enforcement in Service Worker\n * CVE-2026-9116: Insufficient policy enforcement in ServiceWorker\n * CVE-2026-9117: Type Confusion in GFX\n * CVE-2026-9118: Use after free in XR\n * CVE-2026-9119: Heap buffer overflow in WebRTC\n * CVE-2026-9120: Use after free in WebRTC\n * CVE-2026-9126: Use after free in DOM\n * CVE-2026-9121: Out of bounds read in GPU\n * CVE-2026-9122: Out of bounds read in GPU\n * CVE-2026-9123: Heap buffer overflow in Chromecast\n * CVE-2026-9124: Insufficient validation of untrusted input in Input\n\n- add system-wide chromium.conf as in fedora package\n enable several features by default and disable ai features\n allow to override via setting CHROMIUM_USER_FLAGS\n",
"title": "Description of the patch"
},
{
"category": "details",
"text": "openSUSE-Leap-16.0-packagehub-266",
"title": "Patchnames"
},
{
"category": "legal_disclaimer",
"text": "CSAF 2.0 data is provided by SUSE under the Creative Commons License 4.0 with Attribution (CC-BY-4.0).",
"title": "Terms of use"
}
],
"publisher": {
"category": "vendor",
"contact_details": "https://www.suse.com/support/security/contact/",
"name": "SUSE Product Security Team",
"namespace": "https://www.suse.com/"
},
"references": [
{
"category": "external",
"summary": "SUSE ratings",
"url": "https://www.suse.com/support/security/rating/"
},
{
"category": "self",
"summary": "URL of this CSAF notice",
"url": "https://ftp.suse.com/pub/projects/security/csaf/opensuse-su-2026_20775-1.json"
},
{
"category": "self",
"summary": "SUSE Bug 1265848",
"url": "https://bugzilla.suse.com/1265848"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8509 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8509/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8510 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8510/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8511 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8511/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8512 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8512/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8513 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8513/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8514 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8514/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8515 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8515/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8516 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8516/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8517 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8517/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8518 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8518/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8519 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8519/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8520 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8520/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8521 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8521/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8522 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8522/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8523 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8523/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8524 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8524/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8525 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8525/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8526 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8526/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8527 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8527/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8528 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8528/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8529 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8529/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8530 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8530/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8531 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8531/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8532 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8532/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8533 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8533/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8534 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8534/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8535 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8535/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8536 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8536/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8537 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8537/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8538 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8538/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8539 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8539/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8540 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8540/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8541 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8541/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8542 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8542/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8543 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8543/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8544 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8544/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8545 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8545/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8546 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8546/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8547 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8547/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8548 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8548/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8549 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8549/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8550 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8550/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8551 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8551/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8552 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8552/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8553 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8553/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8554 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8554/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8555 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8555/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8556 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8556/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8557 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8557/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8558 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8558/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8559 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8559/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8560 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8560/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8561 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8561/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8562 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8562/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8563 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8563/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8564 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8564/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8565 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8565/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8566 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8566/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8567 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8567/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8568 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8568/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8569 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8569/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8570 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8570/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8571 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8571/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8572 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8572/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8573 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8573/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8574 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8574/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8575 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8575/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8576 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8576/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8577 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8577/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8578 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8578/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8579 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8579/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8580 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8580/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8581 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8581/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8582 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8582/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8583 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8583/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8584 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8584/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8585 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8585/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8586 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8586/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-8587 page",
"url": "https://www.suse.com/security/cve/CVE-2026-8587/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9110 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9110/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9111 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9111/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9112 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9112/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9113 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9113/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9114 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9114/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9115 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9115/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9116 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9116/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9117 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9117/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9118 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9118/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9119 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9119/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9120 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9120/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9121 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9121/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9122 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9122/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9123 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9123/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9124 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9124/"
},
{
"category": "self",
"summary": "SUSE CVE CVE-2026-9126 page",
"url": "https://www.suse.com/security/cve/CVE-2026-9126/"
}
],
"title": "Security update for chromium",
"tracking": {
"current_release_date": "2026-05-23T05:38:53Z",
"generator": {
"date": "2026-05-23T05:38:53Z",
"engine": {
"name": "cve-database.git:bin/generate-csaf.pl",
"version": "1"
}
},
"id": "openSUSE-SU-2026:20775-1",
"initial_release_date": "2026-05-23T05:38:53Z",
"revision_history": [
{
"date": "2026-05-23T05:38:53Z",
"number": "1",
"summary": "Current version"
}
],
"status": "final",
"version": "1"
}
},
"product_tree": {
"branches": [
{
"branches": [
{
"branches": [
{
"category": "product_version",
"name": "chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"product": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"product_id": "chromedriver-148.0.7778.178-bp160.1.1.aarch64"
}
},
{
"category": "product_version",
"name": "chromium-148.0.7778.178-bp160.1.1.aarch64",
"product": {
"name": "chromium-148.0.7778.178-bp160.1.1.aarch64",
"product_id": "chromium-148.0.7778.178-bp160.1.1.aarch64"
}
}
],
"category": "architecture",
"name": "aarch64"
},
{
"branches": [
{
"category": "product_version",
"name": "chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"product": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"product_id": "chromedriver-148.0.7778.178-bp160.1.1.ppc64le"
}
},
{
"category": "product_version",
"name": "chromium-148.0.7778.178-bp160.1.1.ppc64le",
"product": {
"name": "chromium-148.0.7778.178-bp160.1.1.ppc64le",
"product_id": "chromium-148.0.7778.178-bp160.1.1.ppc64le"
}
}
],
"category": "architecture",
"name": "ppc64le"
},
{
"branches": [
{
"category": "product_version",
"name": "chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"product": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"product_id": "chromedriver-148.0.7778.178-bp160.1.1.x86_64"
}
},
{
"category": "product_version",
"name": "chromium-148.0.7778.178-bp160.1.1.x86_64",
"product": {
"name": "chromium-148.0.7778.178-bp160.1.1.x86_64",
"product_id": "chromium-148.0.7778.178-bp160.1.1.x86_64"
}
}
],
"category": "architecture",
"name": "x86_64"
},
{
"branches": [
{
"category": "product_name",
"name": "openSUSE Leap 16.0",
"product": {
"name": "openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0"
}
}
],
"category": "product_family",
"name": "SUSE Linux Enterprise"
}
],
"category": "vendor",
"name": "SUSE"
}
],
"relationships": [
{
"category": "default_component_of",
"full_product_name": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.aarch64 as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64"
},
"product_reference": "chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"relates_to_product_reference": "openSUSE Leap 16.0"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.ppc64le as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le"
},
"product_reference": "chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"relates_to_product_reference": "openSUSE Leap 16.0"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "chromedriver-148.0.7778.178-bp160.1.1.x86_64 as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64"
},
"product_reference": "chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"relates_to_product_reference": "openSUSE Leap 16.0"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "chromium-148.0.7778.178-bp160.1.1.aarch64 as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64"
},
"product_reference": "chromium-148.0.7778.178-bp160.1.1.aarch64",
"relates_to_product_reference": "openSUSE Leap 16.0"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "chromium-148.0.7778.178-bp160.1.1.ppc64le as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le"
},
"product_reference": "chromium-148.0.7778.178-bp160.1.1.ppc64le",
"relates_to_product_reference": "openSUSE Leap 16.0"
},
{
"category": "default_component_of",
"full_product_name": {
"name": "chromium-148.0.7778.178-bp160.1.1.x86_64 as component of openSUSE Leap 16.0",
"product_id": "openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
},
"product_reference": "chromium-148.0.7778.178-bp160.1.1.x86_64",
"relates_to_product_reference": "openSUSE Leap 16.0"
}
]
},
"vulnerabilities": [
{
"cve": "CVE-2026-8509",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8509"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in WebML in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8509",
"url": "https://www.suse.com/security/cve/CVE-2026-8509"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8509",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8509"
},
{
"cve": "CVE-2026-8510",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8510"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in Skia in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8510",
"url": "https://www.suse.com/security/cve/CVE-2026-8510"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8510",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8510"
},
{
"cve": "CVE-2026-8511",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8511"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8511",
"url": "https://www.suse.com/security/cve/CVE-2026-8511"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8511",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8511"
},
{
"cve": "CVE-2026-8512",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8512"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in FileSystem in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8512",
"url": "https://www.suse.com/security/cve/CVE-2026-8512"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8512",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8512"
},
{
"cve": "CVE-2026-8513",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8513"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Input in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8513",
"url": "https://www.suse.com/security/cve/CVE-2026-8513"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8513",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8513"
},
{
"cve": "CVE-2026-8514",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8514"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Aura in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8514",
"url": "https://www.suse.com/security/cve/CVE-2026-8514"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8514",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8514"
},
{
"cve": "CVE-2026-8515",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8515"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in HID in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8515",
"url": "https://www.suse.com/security/cve/CVE-2026-8515"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8515",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8515"
},
{
"cve": "CVE-2026-8516",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8516"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in DataTransfer in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8516",
"url": "https://www.suse.com/security/cve/CVE-2026-8516"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8516",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8516"
},
{
"cve": "CVE-2026-8517",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8517"
}
],
"notes": [
{
"category": "general",
"text": "Object lifecycle issue in WebShare in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8517",
"url": "https://www.suse.com/security/cve/CVE-2026-8517"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8517",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8517"
},
{
"cve": "CVE-2026-8518",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8518"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Blink in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8518",
"url": "https://www.suse.com/security/cve/CVE-2026-8518"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8518",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8518"
},
{
"cve": "CVE-2026-8519",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8519"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8519",
"url": "https://www.suse.com/security/cve/CVE-2026-8519"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8519",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8519"
},
{
"cve": "CVE-2026-8520",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8520"
}
],
"notes": [
{
"category": "general",
"text": "Race in Payments in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8520",
"url": "https://www.suse.com/security/cve/CVE-2026-8520"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8520",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8520"
},
{
"cve": "CVE-2026-8521",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8521"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Tab Groups in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via malicious network traffic. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8521",
"url": "https://www.suse.com/security/cve/CVE-2026-8521"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8521",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8521"
},
{
"cve": "CVE-2026-8522",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8522"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Downloads in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8522",
"url": "https://www.suse.com/security/cve/CVE-2026-8522"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8522",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8522"
},
{
"cve": "CVE-2026-8523",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8523"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8523",
"url": "https://www.suse.com/security/cve/CVE-2026-8523"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8523",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8523"
},
{
"cve": "CVE-2026-8524",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8524"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds write in WebAudio in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8524",
"url": "https://www.suse.com/security/cve/CVE-2026-8524"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8524",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8524"
},
{
"cve": "CVE-2026-8525",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8525"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in ANGLE in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8525",
"url": "https://www.suse.com/security/cve/CVE-2026-8525"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8525",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8525"
},
{
"cve": "CVE-2026-8526",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8526"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds write in WebRTC in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8526",
"url": "https://www.suse.com/security/cve/CVE-2026-8526"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8526",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8526"
},
{
"cve": "CVE-2026-8527",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8527"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in Downloads in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8527",
"url": "https://www.suse.com/security/cve/CVE-2026-8527"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8527",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8527"
},
{
"cve": "CVE-2026-8528",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8528"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in SiteIsolation in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to bypass Site Isolation via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8528",
"url": "https://www.suse.com/security/cve/CVE-2026-8528"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8528",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8528"
},
{
"cve": "CVE-2026-8529",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8529"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in Codecs in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted video file. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8529",
"url": "https://www.suse.com/security/cve/CVE-2026-8529"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8529",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8529"
},
{
"cve": "CVE-2026-8530",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8530"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Network in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8530",
"url": "https://www.suse.com/security/cve/CVE-2026-8530"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8530",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8530"
},
{
"cve": "CVE-2026-8531",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8531"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in WebML in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8531",
"url": "https://www.suse.com/security/cve/CVE-2026-8531"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8531",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8531"
},
{
"cve": "CVE-2026-8532",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8532"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in XML in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8532",
"url": "https://www.suse.com/security/cve/CVE-2026-8532"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8532",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8532"
},
{
"cve": "CVE-2026-8533",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8533"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8533",
"url": "https://www.suse.com/security/cve/CVE-2026-8533"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8533",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8533"
},
{
"cve": "CVE-2026-8534",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8534"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in GPU in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8534",
"url": "https://www.suse.com/security/cve/CVE-2026-8534"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8534",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8534"
},
{
"cve": "CVE-2026-8535",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8535"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in Media in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted JPEG file. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8535",
"url": "https://www.suse.com/security/cve/CVE-2026-8535"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8535",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8535"
},
{
"cve": "CVE-2026-8536",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8536"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in ReadingMode in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to bypass site Isolation via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8536",
"url": "https://www.suse.com/security/cve/CVE-2026-8536"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8536",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8536"
},
{
"cve": "CVE-2026-8537",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8537"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in ViewTransitions in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8537",
"url": "https://www.suse.com/security/cve/CVE-2026-8537"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8537",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8537"
},
{
"cve": "CVE-2026-8538",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8538"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform a denial of service via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8538",
"url": "https://www.suse.com/security/cve/CVE-2026-8538"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8538",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8538"
},
{
"cve": "CVE-2026-8539",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8539"
}
],
"notes": [
{
"category": "general",
"text": "Script injection in SanitizerAPI in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to inject arbitrary scripts or HTML (UXSS) via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8539",
"url": "https://www.suse.com/security/cve/CVE-2026-8539"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8539",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8539"
},
{
"cve": "CVE-2026-8540",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8540"
}
],
"notes": [
{
"category": "general",
"text": "Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8540",
"url": "https://www.suse.com/security/cve/CVE-2026-8540"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8540",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8540"
},
{
"cve": "CVE-2026-8541",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8541"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8541",
"url": "https://www.suse.com/security/cve/CVE-2026-8541"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8541",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8541"
},
{
"cve": "CVE-2026-8542",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8542"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8542",
"url": "https://www.suse.com/security/cve/CVE-2026-8542"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8542",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8542"
},
{
"cve": "CVE-2026-8543",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8543"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in FileSystem in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8543",
"url": "https://www.suse.com/security/cve/CVE-2026-8543"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8543",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8543"
},
{
"cve": "CVE-2026-8544",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8544"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8544",
"url": "https://www.suse.com/security/cve/CVE-2026-8544"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8544",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8544"
},
{
"cve": "CVE-2026-8545",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8545"
}
],
"notes": [
{
"category": "general",
"text": "Object corruption in Compositing in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8545",
"url": "https://www.suse.com/security/cve/CVE-2026-8545"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8545",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8545"
},
{
"cve": "CVE-2026-8546",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8546"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in GPU in Google Chrome on Mac and Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8546",
"url": "https://www.suse.com/security/cve/CVE-2026-8546"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8546",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8546"
},
{
"cve": "CVE-2026-8547",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8547"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in Passwords in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8547",
"url": "https://www.suse.com/security/cve/CVE-2026-8547"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8547",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8547"
},
{
"cve": "CVE-2026-8548",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8548"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds write in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8548",
"url": "https://www.suse.com/security/cve/CVE-2026-8548"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8548",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8548"
},
{
"cve": "CVE-2026-8549",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8549"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Media in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8549",
"url": "https://www.suse.com/security/cve/CVE-2026-8549"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8549",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8549"
},
{
"cve": "CVE-2026-8550",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8550"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Google Lens in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8550",
"url": "https://www.suse.com/security/cve/CVE-2026-8550"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8550",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8550"
},
{
"cve": "CVE-2026-8551",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8551"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Downloads in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who convinced a user to engage in specific UI gestures to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8551",
"url": "https://www.suse.com/security/cve/CVE-2026-8551"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8551",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8551"
},
{
"cve": "CVE-2026-8552",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8552"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8552",
"url": "https://www.suse.com/security/cve/CVE-2026-8552"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8552",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8552"
},
{
"cve": "CVE-2026-8553",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8553"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8553",
"url": "https://www.suse.com/security/cve/CVE-2026-8553"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8553",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8553"
},
{
"cve": "CVE-2026-8554",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8554"
}
],
"notes": [
{
"category": "general",
"text": "Type Confusion in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8554",
"url": "https://www.suse.com/security/cve/CVE-2026-8554"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8554",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8554"
},
{
"cve": "CVE-2026-8555",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8555"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in GTK in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8555",
"url": "https://www.suse.com/security/cve/CVE-2026-8555"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8555",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8555"
},
{
"cve": "CVE-2026-8556",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8556"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8556",
"url": "https://www.suse.com/security/cve/CVE-2026-8556"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8556",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8556"
},
{
"cve": "CVE-2026-8557",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8557"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Accessibility in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform privilege escalation via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8557",
"url": "https://www.suse.com/security/cve/CVE-2026-8557"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8557",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8557"
},
{
"cve": "CVE-2026-8558",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8558"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds write in Fonts in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8558",
"url": "https://www.suse.com/security/cve/CVE-2026-8558"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8558",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8558"
},
{
"cve": "CVE-2026-8559",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8559"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in Internationalization in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8559",
"url": "https://www.suse.com/security/cve/CVE-2026-8559"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8559",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8559"
},
{
"cve": "CVE-2026-8560",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8560"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in SwiftShader in Google Chrome on Mac and iOS prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8560",
"url": "https://www.suse.com/security/cve/CVE-2026-8560"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8560",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8560"
},
{
"cve": "CVE-2026-8561",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8561"
}
],
"notes": [
{
"category": "general",
"text": "Incorrect security UI in Fullscreen in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8561",
"url": "https://www.suse.com/security/cve/CVE-2026-8561"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8561",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8561"
},
{
"cve": "CVE-2026-8562",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8562"
}
],
"notes": [
{
"category": "general",
"text": "Side-channel information leakage in Navigation in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8562",
"url": "https://www.suse.com/security/cve/CVE-2026-8562"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8562",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8562"
},
{
"cve": "CVE-2026-8563",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8563"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in IFrame Sandbox in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8563",
"url": "https://www.suse.com/security/cve/CVE-2026-8563"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8563",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8563"
},
{
"cve": "CVE-2026-8564",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8564"
}
],
"notes": [
{
"category": "general",
"text": "Incorrect security UI in Downloads in Google Chrome on Android and Mac prior to 148.0.7778.168 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8564",
"url": "https://www.suse.com/security/cve/CVE-2026-8564"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8564",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8564"
},
{
"cve": "CVE-2026-8565",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8565"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in Downloads in Google Chrome on Mac prior to 148.0.7778.168 allowed an attacker who convinced a user to install a malicious extension to perform UI spoofing via a crafted Chrome Extension. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8565",
"url": "https://www.suse.com/security/cve/CVE-2026-8565"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8565",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8565"
},
{
"cve": "CVE-2026-8566",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8566"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in Payments in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker to bypass discretionary access control via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8566",
"url": "https://www.suse.com/security/cve/CVE-2026-8566"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8566",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8566"
},
{
"cve": "CVE-2026-8567",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8567"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in ANGLE in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to perform an out of bounds memory write via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8567",
"url": "https://www.suse.com/security/cve/CVE-2026-8567"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8567",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8567"
},
{
"cve": "CVE-2026-8568",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8568"
}
],
"notes": [
{
"category": "general",
"text": "Determined not a vulnerability",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8568",
"url": "https://www.suse.com/security/cve/CVE-2026-8568"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8568",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8568"
},
{
"cve": "CVE-2026-8569",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8569"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds write in Codecs in Google Chrome on Mac prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8569",
"url": "https://www.suse.com/security/cve/CVE-2026-8569"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8569",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8569"
},
{
"cve": "CVE-2026-8570",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8570"
}
],
"notes": [
{
"category": "general",
"text": "Type Confusion in V8 in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8570",
"url": "https://www.suse.com/security/cve/CVE-2026-8570"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8570",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8570"
},
{
"cve": "CVE-2026-8571",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8571"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in GPU in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8571",
"url": "https://www.suse.com/security/cve/CVE-2026-8571"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8571",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8571"
},
{
"cve": "CVE-2026-8572",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8572"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in Network in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8572",
"url": "https://www.suse.com/security/cve/CVE-2026-8572"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8572",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8572"
},
{
"cve": "CVE-2026-8573",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8573"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8573",
"url": "https://www.suse.com/security/cve/CVE-2026-8573"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8573",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8573"
},
{
"cve": "CVE-2026-8574",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8574"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Core in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8574",
"url": "https://www.suse.com/security/cve/CVE-2026-8574"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8574",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8574"
},
{
"cve": "CVE-2026-8575",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8575"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in UI in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8575",
"url": "https://www.suse.com/security/cve/CVE-2026-8575"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8575",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8575"
},
{
"cve": "CVE-2026-8576",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8576"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in CORS in Google Chrome on Linux and ChromeOS prior to 148.0.7778.168 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8576",
"url": "https://www.suse.com/security/cve/CVE-2026-8576"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8576",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8576"
},
{
"cve": "CVE-2026-8577",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8577"
}
],
"notes": [
{
"category": "general",
"text": "Integer overflow in Fonts in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8577",
"url": "https://www.suse.com/security/cve/CVE-2026-8577"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8577",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8577"
},
{
"cve": "CVE-2026-8578",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8578"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in GPU in Google Chrome on Linux prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8578",
"url": "https://www.suse.com/security/cve/CVE-2026-8578"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8578",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8578"
},
{
"cve": "CVE-2026-8579",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8579"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in Skia in Google Chrome prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory write via a crafted print file. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8579",
"url": "https://www.suse.com/security/cve/CVE-2026-8579"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8579",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8579"
},
{
"cve": "CVE-2026-8580",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8580"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Mojo in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8580",
"url": "https://www.suse.com/security/cve/CVE-2026-8580"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8580",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8580"
},
{
"cve": "CVE-2026-8581",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8581"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in GPU in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8581",
"url": "https://www.suse.com/security/cve/CVE-2026-8581"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8581",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8581"
},
{
"cve": "CVE-2026-8582",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8582"
}
],
"notes": [
{
"category": "general",
"text": "Object lifecycle issue in Dawn in Google Chrome prior to 148.0.7778.168 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8582",
"url": "https://www.suse.com/security/cve/CVE-2026-8582"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8582",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8582"
},
{
"cve": "CVE-2026-8583",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8583"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in WebXR in Google Chrome on Android prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8583",
"url": "https://www.suse.com/security/cve/CVE-2026-8583"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8583",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8583"
},
{
"cve": "CVE-2026-8584",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8584"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in Views in Google Chrome on iOS prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8584",
"url": "https://www.suse.com/security/cve/CVE-2026-8584"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8584",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8584"
},
{
"cve": "CVE-2026-8585",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8585"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in Media in Google Chrome on iOS prior to 148.0.7778.168 allowed a remote attacker who had compromised the renderer process to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8585",
"url": "https://www.suse.com/security/cve/CVE-2026-8585"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8585",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8585"
},
{
"cve": "CVE-2026-8586",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8586"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in Chromoting in Google Chrome prior to 148.0.7778.168 allowed a local attacker to bypass discretionary access control via a malicious file. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8586",
"url": "https://www.suse.com/security/cve/CVE-2026-8586"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8586",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8586"
},
{
"cve": "CVE-2026-8587",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-8587"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in Extensions in Google Chrome on Mac prior to 148.0.7778.168 allowed an attacker who convinced a user to install a malicious extension to execute arbitrary code via a crafted Chrome Extension. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-8587",
"url": "https://www.suse.com/security/cve/CVE-2026-8587"
},
{
"category": "external",
"summary": "SUSE Bug 1265159 for CVE-2026-8587",
"url": "https://bugzilla.suse.com/1265159"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "critical"
}
],
"title": "CVE-2026-8587"
},
{
"cve": "CVE-2026-9110",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9110"
}
],
"notes": [
{
"category": "general",
"text": "Inappropriate implementation in UI in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker who had compromised the renderer process to perform UI spoofing via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9110",
"url": "https://www.suse.com/security/cve/CVE-2026-9110"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9110",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9110"
},
{
"cve": "CVE-2026-9111",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9111"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in WebRTC in Google Chrome on Linux prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: Critical)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9111",
"url": "https://www.suse.com/security/cve/CVE-2026-9111"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9111",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9111"
},
{
"cve": "CVE-2026-9112",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9112"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in GPU in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9112",
"url": "https://www.suse.com/security/cve/CVE-2026-9112"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9112",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9112"
},
{
"cve": "CVE-2026-9113",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9113"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9113",
"url": "https://www.suse.com/security/cve/CVE-2026-9113"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9113",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9113"
},
{
"cve": "CVE-2026-9114",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9114"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in QUIC in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code inside a sandbox via malicious network traffic. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9114",
"url": "https://www.suse.com/security/cve/CVE-2026-9114"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9114",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9114"
},
{
"cve": "CVE-2026-9115",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9115"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in Service Worker in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to bypass same origin policy via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9115",
"url": "https://www.suse.com/security/cve/CVE-2026-9115"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9115",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9115"
},
{
"cve": "CVE-2026-9116",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9116"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient policy enforcement in ServiceWorker in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9116",
"url": "https://www.suse.com/security/cve/CVE-2026-9116"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9116",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9116"
},
{
"cve": "CVE-2026-9117",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9117"
}
],
"notes": [
{
"category": "general",
"text": "Type Confusion in GFX in Google Chrome on Linux, ChromeOS prior to 148.0.7778.179 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted video file. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9117",
"url": "https://www.suse.com/security/cve/CVE-2026-9117"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9117",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9117"
},
{
"cve": "CVE-2026-9118",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9118"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in XR in Google Chrome on Windows prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9118",
"url": "https://www.suse.com/security/cve/CVE-2026-9118"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9118",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9118"
},
{
"cve": "CVE-2026-9119",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9119"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in WebRTC in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9119",
"url": "https://www.suse.com/security/cve/CVE-2026-9119"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9119",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9119"
},
{
"cve": "CVE-2026-9120",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9120"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in WebRTC in Google Chrome prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code via a crafted HTML page. (Chromium security severity: High)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9120",
"url": "https://www.suse.com/security/cve/CVE-2026-9120"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9120",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9120"
},
{
"cve": "CVE-2026-9121",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9121"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in GPU in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9121",
"url": "https://www.suse.com/security/cve/CVE-2026-9121"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9121",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9121"
},
{
"cve": "CVE-2026-9122",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9122"
}
],
"notes": [
{
"category": "general",
"text": "Out of bounds read in GPU in Google Chrome on Mac prior to 148.0.7778.179 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9122",
"url": "https://www.suse.com/security/cve/CVE-2026-9122"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9122",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9122"
},
{
"cve": "CVE-2026-9123",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9123"
}
],
"notes": [
{
"category": "general",
"text": "Heap buffer overflow in Chromecast in Google Chrome on Android, Linux, ChromeOS prior to 148.0.7778.179 allowed a local attacker to execute arbitrary code inside a sandbox via malicious network traffic. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9123",
"url": "https://www.suse.com/security/cve/CVE-2026-9123"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9123",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9123"
},
{
"cve": "CVE-2026-9124",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9124"
}
],
"notes": [
{
"category": "general",
"text": "Insufficient validation of untrusted input in Input in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker who had compromised the renderer process to leak cross-origin data via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9124",
"url": "https://www.suse.com/security/cve/CVE-2026-9124"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9124",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9124"
},
{
"cve": "CVE-2026-9126",
"ids": [
{
"system_name": "SUSE CVE Page",
"text": "https://www.suse.com/security/cve/CVE-2026-9126"
}
],
"notes": [
{
"category": "general",
"text": "Use after free in DOM in Google Chrome on prior to 148.0.7778.179 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)",
"title": "CVE description"
}
],
"product_status": {
"recommended": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
},
"references": [
{
"category": "external",
"summary": "CVE-2026-9126",
"url": "https://www.suse.com/security/cve/CVE-2026-9126"
},
{
"category": "external",
"summary": "SUSE Bug 1265848 for CVE-2026-9126",
"url": "https://bugzilla.suse.com/1265848"
}
],
"remediations": [
{
"category": "vendor_fix",
"details": "To install this SUSE Security Update use the SUSE recommended installation methods like YaST online_update or \"zypper patch\".\n",
"product_ids": [
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromedriver-148.0.7778.178-bp160.1.1.x86_64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.aarch64",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.ppc64le",
"openSUSE Leap 16.0:chromium-148.0.7778.178-bp160.1.1.x86_64"
]
}
],
"threats": [
{
"category": "impact",
"date": "2026-05-23T05:38:53Z",
"details": "important"
}
],
"title": "CVE-2026-9126"
}
]
}
Loading…
Loading…
Experimental. This forecast is provided for visualization only and may change without notice. Do not use it for operational decisions.
Forecast uses a logistic model when the trend is rising, or an exponential decay model when the trend is falling. Fitted via linearized least squares.
Sightings
| Author | Source | Type | Date | Other |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.
Loading…
Loading…
The MITRE ATT&CK techniques below are AI-generated suggestions, inferred from the description of the
vulnerability by the CIRCL/vulnerability-attack-technique-classification-roberta-base
model, served locally by ML-Gateway.
They have not been verified by an analyst and are provided for guidance only.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
The approach is described in our paper Mapping CVEs to MITRE ATT&CK Techniques: A Curated Gold-Set Classifier and the Limits of LLM-Assisted Label Expansion.
Browse all ATT&CK techniques and the vulnerabilities related to each.
Loading…
Related by attack behaviour
Vulnerabilities whose description is nearest to this one in the vector space of the CIRCL/vulnerability-attack-technique-biencoder model. This is a similarity search over the bi-encoder space (plain cosine), not a classification, and it has no measured accuracy.
Loading…