openSUSE 16 Security Update : chromium (openSUSE-SU-2026:20775-1)

critical Nessus Plugin ID 316760

Synopsis

The remote openSUSE host is missing one or more security updates.

Description

The remote openSUSE 16 host has packages installed that are affected by multiple vulnerabilities as referenced in the openSUSE-SU-2026:20775-1 advisory.

Changes in chromium:

- Chromium 148.0.7778.178 (boo#1265848)
* CVE-2026-9111: Use after free in WebRTC
* CVE-2026-9110: Inappropriate implementation in UI
* CVE-2026-9112: Use after free in GPU
* CVE-2026-9113: Out of bounds read in GPU
* CVE-2026-9114: Use after free in QUIC
* CVE-2026-9115: Insufficient policy enforcement in Service Worker
* CVE-2026-9116: Insufficient policy enforcement in ServiceWorker
* CVE-2026-9117: Type Confusion in GFX
* CVE-2026-9118: Use after free in XR
* CVE-2026-9119: Heap buffer overflow in WebRTC
* CVE-2026-9120: Use after free in WebRTC
* CVE-2026-9126: Use after free in DOM
* CVE-2026-9121: Out of bounds read in GPU
* CVE-2026-9122: Out of bounds read in GPU
* CVE-2026-9123: Heap buffer overflow in Chromecast
* CVE-2026-9124: Insufficient validation of untrusted input in Input

- add system-wide chromium.conf as in fedora package enable several features by default and disable ai features allow to override via setting CHROMIUM_USER_FLAGS

Tenable has extracted the preceding description block directly from the SUSE security advisory.

Note that Nessus has not tested for these issues but has instead relied only on the application's self-reported version number.

Solution

Update the affected chromedriver and / or chromium packages.

See Also

https://www.suse.com/security/cve/CVE-2026-8526

https://www.suse.com/security/cve/CVE-2026-8527

https://www.suse.com/security/cve/CVE-2026-8528

https://www.suse.com/security/cve/CVE-2026-8529

https://www.suse.com/security/cve/CVE-2026-8530

https://www.suse.com/security/cve/CVE-2026-8531

https://www.suse.com/security/cve/CVE-2026-8532

https://www.suse.com/security/cve/CVE-2026-8533

https://www.suse.com/security/cve/CVE-2026-8534

https://www.suse.com/security/cve/CVE-2026-8535

https://www.suse.com/security/cve/CVE-2026-8536

https://www.suse.com/security/cve/CVE-2026-8537

https://www.suse.com/security/cve/CVE-2026-8538

https://www.suse.com/security/cve/CVE-2026-8539

https://www.suse.com/security/cve/CVE-2026-8540

https://www.suse.com/security/cve/CVE-2026-8541

https://www.suse.com/security/cve/CVE-2026-8542

https://www.suse.com/security/cve/CVE-2026-8543

https://www.suse.com/security/cve/CVE-2026-8544

https://www.suse.com/security/cve/CVE-2026-8545

https://www.suse.com/security/cve/CVE-2026-8546

https://www.suse.com/security/cve/CVE-2026-8547

https://www.suse.com/security/cve/CVE-2026-8548

https://www.suse.com/security/cve/CVE-2026-8549

https://www.suse.com/security/cve/CVE-2026-8550

https://www.suse.com/security/cve/CVE-2026-8551

https://www.suse.com/security/cve/CVE-2026-8552

https://www.suse.com/security/cve/CVE-2026-8553

https://www.suse.com/security/cve/CVE-2026-8554

https://www.suse.com/security/cve/CVE-2026-8555

https://www.suse.com/security/cve/CVE-2026-8556

https://www.suse.com/security/cve/CVE-2026-8557

https://www.suse.com/security/cve/CVE-2026-8558

https://www.suse.com/security/cve/CVE-2026-8559

https://www.suse.com/security/cve/CVE-2026-8560

https://www.suse.com/security/cve/CVE-2026-8561

https://www.suse.com/security/cve/CVE-2026-8562

https://www.suse.com/security/cve/CVE-2026-8563

https://www.suse.com/security/cve/CVE-2026-8564

https://www.suse.com/security/cve/CVE-2026-8565

https://www.suse.com/security/cve/CVE-2026-8566

https://www.suse.com/security/cve/CVE-2026-8567

https://www.suse.com/security/cve/CVE-2026-8568

https://www.suse.com/security/cve/CVE-2026-8569

https://www.suse.com/security/cve/CVE-2026-8570

https://www.suse.com/security/cve/CVE-2026-8571

https://www.suse.com/security/cve/CVE-2026-8572

https://www.suse.com/security/cve/CVE-2026-8573

https://www.suse.com/security/cve/CVE-2026-8574

https://www.suse.com/security/cve/CVE-2026-8575

https://www.suse.com/security/cve/CVE-2026-8576

https://www.suse.com/security/cve/CVE-2026-8577

https://www.suse.com/security/cve/CVE-2026-8578

https://www.suse.com/security/cve/CVE-2026-8579

https://www.suse.com/security/cve/CVE-2026-8580

https://www.suse.com/security/cve/CVE-2026-8581

https://www.suse.com/security/cve/CVE-2026-8582

https://www.suse.com/security/cve/CVE-2026-8583

https://www.suse.com/security/cve/CVE-2026-8584

https://www.suse.com/security/cve/CVE-2026-8585

https://www.suse.com/security/cve/CVE-2026-8586

https://www.suse.com/security/cve/CVE-2026-8587

https://www.suse.com/security/cve/CVE-2026-9110

https://www.suse.com/security/cve/CVE-2026-9111

https://www.suse.com/security/cve/CVE-2026-9112

https://www.suse.com/security/cve/CVE-2026-9113

https://www.suse.com/security/cve/CVE-2026-9114

https://www.suse.com/security/cve/CVE-2026-9115

https://www.suse.com/security/cve/CVE-2026-9116

https://www.suse.com/security/cve/CVE-2026-9117

https://www.suse.com/security/cve/CVE-2026-9118

https://www.suse.com/security/cve/CVE-2026-9119

https://www.suse.com/security/cve/CVE-2026-9120

https://www.suse.com/security/cve/CVE-2026-9121

https://www.suse.com/security/cve/CVE-2026-9122

https://www.suse.com/security/cve/CVE-2026-9123

https://www.suse.com/security/cve/CVE-2026-9124

https://www.suse.com/security/cve/CVE-2026-9126

https://bugzilla.suse.com/1265848

https://www.suse.com/security/cve/CVE-2026-8509

https://www.suse.com/security/cve/CVE-2026-8510

https://www.suse.com/security/cve/CVE-2026-8511

https://www.suse.com/security/cve/CVE-2026-8512

https://www.suse.com/security/cve/CVE-2026-8513

https://www.suse.com/security/cve/CVE-2026-8514

https://www.suse.com/security/cve/CVE-2026-8515

https://www.suse.com/security/cve/CVE-2026-8516

https://www.suse.com/security/cve/CVE-2026-8517

https://www.suse.com/security/cve/CVE-2026-8518

https://www.suse.com/security/cve/CVE-2026-8519

https://www.suse.com/security/cve/CVE-2026-8520

https://www.suse.com/security/cve/CVE-2026-8521

https://www.suse.com/security/cve/CVE-2026-8522

https://www.suse.com/security/cve/CVE-2026-8523

https://www.suse.com/security/cve/CVE-2026-8524

https://www.suse.com/security/cve/CVE-2026-8525

Plugin Details

Severity: Critical

ID: 316760

File Name: openSUSE-2026-20775-1.nasl

Version: 1.1

Type: Local

Agent: unix

Published: 5/26/2026

Updated: 5/26/2026

Supported Sensors: Frictionless Assessment AWS, Frictionless Assessment Azure, Frictionless Assessment Agent, Nessus Agent, Continuous Assessment, Nessus

Risk Information

VPR

Risk Factor: High

Score: 8.4

CVSS v2

Risk Factor: Critical

Base Score: 10

Temporal Score: 7.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:C/I:C/A:C

CVSS Score Source: CVE-2026-9126

CVSS v3

Risk Factor: Critical

Base Score: 9.6

Temporal Score: 8.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H

Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C

CVSS Score Source: CVE-2026-8580

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:chromium, p-cpe:/a:novell:opensuse:chromedriver, cpe:/o:novell:opensuse:16.0

Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list

Exploit Ease: No known exploits are available

Patch Publication Date: 5/23/2026

Vulnerability Publication Date: 5/12/2026

Reference Information

CVE: CVE-2026-8509, CVE-2026-8510, CVE-2026-8511, CVE-2026-8512, CVE-2026-8513, CVE-2026-8514, CVE-2026-8515, CVE-2026-8516, CVE-2026-8517, CVE-2026-8518, CVE-2026-8519, CVE-2026-8520, CVE-2026-8521, CVE-2026-8522, CVE-2026-8523, CVE-2026-8524, CVE-2026-8525, CVE-2026-8526, CVE-2026-8527, CVE-2026-8528, CVE-2026-8529, CVE-2026-8530, CVE-2026-8531, CVE-2026-8532, CVE-2026-8533, CVE-2026-8534, CVE-2026-8535, CVE-2026-8536, CVE-2026-8537, CVE-2026-8538, CVE-2026-8539, CVE-2026-8540, CVE-2026-8541, CVE-2026-8542, CVE-2026-8543, CVE-2026-8544, CVE-2026-8545, CVE-2026-8546, CVE-2026-8547, CVE-2026-8548, CVE-2026-8549, CVE-2026-8550, CVE-2026-8551, CVE-2026-8552, CVE-2026-8553, CVE-2026-8554, CVE-2026-8555, CVE-2026-8556, CVE-2026-8557, CVE-2026-8558, CVE-2026-8559, CVE-2026-8560, CVE-2026-8561, CVE-2026-8562, CVE-2026-8563, CVE-2026-8564, CVE-2026-8565, CVE-2026-8566, CVE-2026-8567, CVE-2026-8568, CVE-2026-8569, CVE-2026-8570, CVE-2026-8571, CVE-2026-8572, CVE-2026-8573, CVE-2026-8574, CVE-2026-8575, CVE-2026-8576, CVE-2026-8577, CVE-2026-8578, CVE-2026-8579, CVE-2026-8580, CVE-2026-8581, CVE-2026-8582, CVE-2026-8583, CVE-2026-8584, CVE-2026-8585, CVE-2026-8586, CVE-2026-8587, CVE-2026-9110, CVE-2026-9111, CVE-2026-9112, CVE-2026-9113, CVE-2026-9114, CVE-2026-9115, CVE-2026-9116, CVE-2026-9117, CVE-2026-9118, CVE-2026-9119, CVE-2026-9120, CVE-2026-9121, CVE-2026-9122, CVE-2026-9123, CVE-2026-9124, CVE-2026-9126