CVS commit: pkgsrc/www/chromium

"Robert Bagdan" <[email protected]>
Newsgroups gmane.os.netbsd.devel.pkgsrc.cvs
Message-ID <[email protected]>
Module Name:	pkgsrc
Committed By:	kikadf
Date:		Tue Jul 28 11:41:54 UTC 2026

Modified Files:
	pkgsrc/www/chromium: Makefile distinfo

Log Message:
www/chromium: update to 150.0.7871.186

* 150.0.7871.186
This update includes 4 security fixes. Please see the Chrome Security Page for more information.

[N/A][518237034] High CVE-2026-16807: Out of bounds write in Codecs. Reported by Google on 2026-05-30
[N/A][522064153] High CVE-2026-16806: Use after free in WebMCP. Reported by Google on 2026-06-10
[N/A][523292588] High CVE-2026-16805: Use after free in Blink. Reported by Google on 2026-06-12
[N/A][524721670] High CVE-2026-16804: Use after free in Input. Reported by Google on 2026-06-16

* 150.0.7871.181
This update includes 12 security fixes. Below, we highlight fixes that were contributed by
external researchers. Please see the Chrome Security Page for more information.

[$500][527930356] High CVE-2026-16420: Type Confusion in WebAudio. Reported by Found by XBOW and triaged by Brendan Dolan-Gavitt on 2026-06-26
[$500][528276487] High CVE-2026-16421: Inappropriate implementation in WebAudio. Reported by Found by XBOW and triaged by Brendan Dolan-Gavitt on 2026-06-26
[N/A][517359779] High CVE-2026-16413: Out of bounds write in ANGLE. Reported by Google on 2026-05-28
[N/A][517651910] High CVE-2026-16414: Insufficient validation of untrusted input in Chromecast. Reported by Google on 2026-05-28
[N/A][519244446] High CVE-2026-16415: Insufficient validation of untrusted input in Extensions. Reported by Google on 2026-06-02
[N/A][520172356] High CVE-2026-16416: Integer overflow in Chromecast. Reported by Google on 2026-06-05
[N/A][521491024] High CVE-2026-16417: Uninitialized Use in Skia. Reported by Google on 2026-06-08
[N/A][522125255] High CVE-2026-16418: Stack buffer overflow in V8. Reported by Google on 2026-06-10
[N/A][523435970] High CVE-2026-16419: Out of bounds read and write in ANGLE. Reported by Google on 2026-06-13
[N/A][533515002] High CVE-2026-16422: Insufficient validation of untrusted input in Certificate. Reported by Google on 2026-07-10
[N/A][534582496] High CVE-2026-16423: Use after free in UI. Reported by Google on 2026-07-14
[N/A][534858939] High CVE-2026-16424: Use after free in GPU. Reported by Google on 2026-07-14


To generate a diff of this commit:
cvs rdiff -u -r1.70 -r1.71 pkgsrc/www/chromium/Makefile
cvs rdiff -u -r1.51 -r1.52 pkgsrc/www/chromium/distinfo

Please note that diffs are not public domain; they are subject to the
copyright notices on the relevant files.
(unnamed) (text/x-diff, 3.3 KB)
Modified files:

Index: pkgsrc/www/chromium/Makefile
diff -u pkgsrc/www/chromium/Makefile:1.70 pkgsrc/www/chromium/Makefile:1.71
--- pkgsrc/www/chromium/Makefile:1.70	Mon Jul 20 13:53:51 2026
+++ pkgsrc/www/chromium/Makefile	Tue Jul 28 11:41:53 2026
@@ -1,7 +1,7 @@
-# $NetBSD: Makefile,v 1.70 2026/07/20 13:53:51 kikadf Exp $
+# $NetBSD: Makefile,v 1.71 2026/07/28 11:41:53 kikadf Exp $
 
 DISTNAME=			chromium-${VERSION}
-VERSION=			150.0.7871.128
+VERSION=			150.0.7871.186
 CATEGORIES=			www
 MASTER_SITES=			https://commondatastorage.googleapis.com/chromium-browser-official/
 EXTRACT_SUFX_C=			.tar.xz

Index: pkgsrc/www/chromium/distinfo
diff -u pkgsrc/www/chromium/distinfo:1.51 pkgsrc/www/chromium/distinfo:1.52
--- pkgsrc/www/chromium/distinfo:1.51	Mon Jul 20 13:53:51 2026
+++ pkgsrc/www/chromium/distinfo	Tue Jul 28 11:41:53 2026
@@ -1,4 +1,4 @@
-$NetBSD: distinfo,v 1.51 2026/07/20 13:53:51 kikadf Exp $
+$NetBSD: distinfo,v 1.52 2026/07/28 11:41:53 kikadf Exp $
 
 BLAKE2s (ahash-0.8.12.crate) = 157e4e2836883526fa391419f08c2aa4c932fb96ddf2b254bb436193691754c4
 SHA512 (ahash-0.8.12.crate) = 872e5fa0d1334abac96d10eca18f32c2b1a1e0b38671c132b6effd029e9f0147ddcef79f4d85c8baf0537ddfb8c39a85f61d073e1fb3143dba659a8385641e1b
@@ -66,12 +66,12 @@ Size (cc-1.2.61.crate) = 97163 bytes
 BLAKE2s (cfg-if-1.0.4.crate) = 517b7cff4f133f9b02492c0db281822fd02c24941a7aa4f9b1502895dc5e58d9
 SHA512 (cfg-if-1.0.4.crate) = 176e04df7ba783b7143bb84397b777f5c5a1305c08a5c3a218d4a66830620be89ed68992ba27686165bcd3fb2f34b2daf80b2a1d4b481ecc267c988e84d28e9d
 Size (cfg-if-1.0.4.crate) = 9360 bytes
-BLAKE2s (chromium-150.0.7871.128-lite.tar.xz) = 51664bfdfcefa3d720cea0f69c531a606c85fc01d1c6425ad9ffc1b37710d876
-SHA512 (chromium-150.0.7871.128-lite.tar.xz) = ee69d03ee170eb57a2e2fd9b6ce691d08a5cd72a738044d7ac2d58c53cbec33d39369b6f543bf9d44934f62e33240e2e5a0f0b093ee5b846de1a0e9d1ad48b0d
-Size (chromium-150.0.7871.128-lite.tar.xz) = 1670339852 bytes
-BLAKE2s (chromium-150.0.7871.128-testdata.tar.xz) = 10aaa0ec680d6f7b300682f3b353b925bda2337068b208433304ae230aa1f1da
-SHA512 (chromium-150.0.7871.128-testdata.tar.xz) = ac983c117b51925a068b97a14bef33b0cececc268137426bcef5680fb642a4d9485490ed66a61307ba0b67b27a705a00661c42484d7022680eda09c8a00873d9
-Size (chromium-150.0.7871.128-testdata.tar.xz) = 1314346616 bytes
+BLAKE2s (chromium-150.0.7871.186-lite.tar.xz) = 587de0bd43e05f3ff6064737a4675ea33d21c336125fa59789322d81978cafb1
+SHA512 (chromium-150.0.7871.186-lite.tar.xz) = 2b0a70340947bf237144d9d3ac8ef364479b2e8fd8883a76b5296a88dbfff803bba347d8583c20cddae90c1000c59cb802ee761a45fb929ee6fd11315bb50f58
+Size (chromium-150.0.7871.186-lite.tar.xz) = 1668536212 bytes
+BLAKE2s (chromium-150.0.7871.186-testdata.tar.xz) = 74bfe692489a689ea9f7b5562047f19bba04c734bd1467c1b4b7621ff668b0a3
+SHA512 (chromium-150.0.7871.186-testdata.tar.xz) = ceff00f326735871979e10ed4e638262379486bf8a96e0756100d6ff300ade5687d208671b403b8ca0f4ce499c7aab68d5f73be7dc8915fd1363eaca998eeb63
+Size (chromium-150.0.7871.186-testdata.tar.xz) = 1314381172 bytes
 BLAKE2s (cmake-0.1.58.crate) = a4568b73f30075a127114fb24a891b182573483d81080643888ecbd5e954efe7
 SHA512 (cmake-0.1.58.crate) = 49420a5d7d71ddccc21b71373769e1e28ab98c9af1a0c5d59fc3127e6dcc45cb1b7c6b5a37c9110907daceda7fd10bb59344f2bb8f041b18d62b16c22c5d0d60
 Size (cmake-0.1.58.crate) = 20474 bytes
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.