Page MenuHomeSolus

Update brave to 1.13.82
ClosedPublic

Authored by Jacalz on Sep 8 2020, 4:56 PM.
Tags
None
Referenced Files
F11050610: D9605.id23136.diff
Thu, Aug 10, 7:10 PM
F11050609: D9605.id.diff
Thu, Aug 10, 7:10 PM
F11050608: D9605.id23163.diff
Thu, Aug 10, 7:10 PM
F11035893: D9605.diff
Wed, Aug 9, 6:33 PM
F11025627: D9605.id23163.diff
Wed, Aug 9, 1:12 AM
F11014918: D9605.id23163.diff
Sat, Aug 5, 8:27 AM
F11013134: D9605.id23136.diff
Fri, Aug 4, 10:48 AM
F11013023: D9605.diff
Fri, Aug 4, 9:56 AM
Subscribers

Details

Summary

Full changelog can be found here.

Security:

  • High CVE-2020-6559: Use after free in presentation API.
  • Medium CVE-2020-6560: Insufficient policy enforcement in autofill.
  • Medium CVE-2020-6561: Inappropriate implementation in Content Security Policy.
  • Medium CVE-2020-6562: Insufficient policy enforcement in Blink.
  • Medium CVE-2020-6563: Insufficient policy enforcement in intent handling.
  • Medium CVE-2020-6564: Incorrect security UI in permissions.
  • Medium CVE-2020-6565: Incorrect security UI in Omnibox.
  • Medium CVE-2020-6566: Insufficient policy enforcement in media.
  • Low CVE-2020-6567: Insufficient validation of untrusted input in command line handling.
  • Low CVE-2020-6568: Insufficient policy enforcement in intent handling.
  • Low CVE-2020-6569: Integer overflow in WebUSB.
  • Low CVE-2020-6570: Side-channel information leakage in WebRTC.
  • Low CVE-2020-6571: Incorrect security UI in Omnibox.
Test Plan
  • Browse a couple sites to make sure that it works correctly.

Diff Detail

Repository
R4107 brave
Lint
Lint Not Applicable
Unit
Tests Not Applicable

Event Timeline

Jacalz requested review of this revision.Sep 8 2020, 4:56 PM
This revision is now accepted and ready to land.Sep 9 2020, 3:21 PM
This revision was automatically updated to reflect the committed changes.