diff options
author | Michael BrĂ¼ning <michael.bruning@qt.io> | 2023-04-04 16:13:07 +0200 |
---|---|---|
committer | Qt Cherry-pick Bot <cherrypick_bot@qt-project.org> | 2023-04-21 15:41:06 +0000 |
commit | f42a049fd8480f354b6dfb8e1773bfb598dbd49f (patch) | |
tree | fd9d4f8a7564579468d681af760aa7eb43e3acfb | |
parent | e7d02b8fd8ff96898d748392abe57c23f50c145e (diff) | |
download | qtwebengine-f42a049fd8480f354b6dfb8e1773bfb598dbd49f.tar.gz |
Update Chromium
Submodule src/3rdparty 22fec96c..d3c3d748:
* Revert "[Backport] CVE-2023-0704: Insufficient policy enforcement in DevTools"
* Do not stop navigation during saving the page if not necessary
* Pass through non-keymutex share handles
* [Backport] CVE-2023-1236: Inappropriate implementation in Internals
* [Backport] CVE-2023-0704: Insufficient policy enforcement in DevTools
* [Backport] Security bug 1417585
* [Backport] Security bug 1418734 (2/2)
* [Backport] Security bug 1418734 (1/2)
* [Backport] Security bug 1415249
* [Backport] Security bug 1402921
* [Backport] Security bug 1337747
* [Backport] Security bug 1412991
* [Backport] CVE-2023-1532: Out of bounds read in GPU Video
* [Backport] CVE-2023-1534: Out of bounds read in ANGLE
* [Backport] CVE-2023-1531: Use after free in ANGLE
* [Backport] CVE-2023-1530: Use after free in PDF (2/2)
* [Backport] CVE-2023-1530: Use after free in PDF (1/2)
* [Backport] CVE-2023-1529: Out of bounds memory access in WebHID
* [Backport] CVE-2023-1235: Type Confusion in DevTools
* [Backport] CVE-2023-1232: Insufficient policy enforcement in Resource Timing
* [Backport] CVE-2023-1233: Insufficient policy enforcement in Resource Timing
* [Backport] CVE-2023-1222: Heap buffer overflow in Web Audio API
* [Backport] CVE-2023-1220: Heap buffer overflow in UMA
* [Backport] CVE-2023-1219: Heap buffer overflow in Metrics (3/3)
* [Backport] CVE-2023-1219: Heap buffer overflow in Metrics (2/3)
* [Backport] CVE-2023-1219: Heap buffer overflow in Metrics (1/3)
* [Backport] CVE-2023-1218: Use after free in WebRTC
* [Backport] CVE-2023-1217: Stack buffer overflow in Crash reporting
* [Backport] CVE-2023-1215: Type Confusion in CSS
* [Backport] CVE-2023-1214: Type Confusion in V8
Fixes: QTBUG-112166
Change-Id: I747f60f72cbf6847bc0ee89bee655972968da921
Reviewed-by: Allan Sandfeld Jensen <allan.jensen@qt.io>
(cherry picked from commit ffc26420b81901bf7f47fe783f8582588451c7e9)
Reviewed-by: Qt Cherry-pick Bot <cherrypick_bot@qt-project.org>
-rw-r--r-- | CHROMIUM_VERSION | 2 | ||||
m--------- | src/3rdparty | 0 | ||||
-rw-r--r-- | src/core/web_engine_context.cpp | 2 |
3 files changed, 2 insertions, 2 deletions
diff --git a/CHROMIUM_VERSION b/CHROMIUM_VERSION index c87bec9a9..14249239c 100644 --- a/CHROMIUM_VERSION +++ b/CHROMIUM_VERSION @@ -1,3 +1,3 @@ Based on Chromium version: 108.0.5359.181 -Patched with security patches up to Chromium version: 110.0.5481.104 +Patched with security patches up to Chromium version: 111.0.5563.110 diff --git a/src/3rdparty b/src/3rdparty -Subproject 22fec96c83014753f8d4d709dad25902cafa1a7 +Subproject d3c3d7483efc6da75e40f37c1f36525b8663d3c diff --git a/src/core/web_engine_context.cpp b/src/core/web_engine_context.cpp index fc34957b0..769807ca2 100644 --- a/src/core/web_engine_context.cpp +++ b/src/core/web_engine_context.cpp @@ -925,7 +925,7 @@ const char *qWebEngineChromiumVersion() noexcept const char *qWebEngineChromiumSecurityPatchVersion() noexcept { - return "110.0.5481.104"; // FIXME: Remember to update + return "111.0.5563.110"; // FIXME: Remember to update } QT_END_NAMESPACE |