Chromium 55+ doesn't support Widevine library
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
| chromium-browser (Ubuntu) |
High
|
Olivier Tilloy |
Bug Description
Since the update to version 55, Amazon Prime Video and Magine TV no longer work. I thought the fix solves this problem, apparently I was wrong. It seems also Widevine DRM since version 55 no longer work. This affects Chromium, Opera and Vivaldi because they use all chromium-
A downgrade to version 53 restores the function.
Changed in chromium-browser (Ubuntu): | |
assignee: | nobody → Chad Miller (cmiller) |
importance: | Undecided → High |
Launchpad Janitor (janitor) wrote : | #1 |
Changed in chromium-browser (Ubuntu): | |
status: | New → Confirmed |
Dirk Böttger (dirkboettger) wrote : | #2 |
This may help
Vivaldi via update to version 1.6.689.46-1
Changelog since the second 1.6 release
[Linux] Vivaldi does play proprietary HTML5 video and audio on Ubuntu with chromium-
Chris Cheney (ccheney) wrote : | #3 |
This also affects Spotify and likely Netflix.
Is this going to be fixed?
Fink Nottle (finknottle) wrote : | #4 |
Relevant issue for a potential fix: https:/
Vuk (wooque) wrote : | #5 |
Issue still present in Chromium 62.0.3202.75. Spotify won't work.
Is there any workaround?
Vuk (wooque) wrote : | #6 |
Debian contains /debian/
Also fix_building_
Maybe replacing fix_building_
Changed in chromium-browser (Ubuntu): | |
assignee: | Chad Miller (cmiller) → Olivier Tilloy (osomon) |
status: | Confirmed → In Progress |
Changed in chromium-browser (Ubuntu): | |
status: | In Progress → Fix Committed |
Launchpad Janitor (janitor) wrote : | #7 |
This bug was fixed in the package chromium-browser - 63.0.3239.
---------------
chromium-browser (63.0.3239.
* Upstream release: 63.0.3239.84
- CVE-2017-15407: Out of bounds write in QUIC.
- CVE-2017-15408: Heap buffer overflow in PDFium.
- CVE-2017-15409: Out of bounds write in Skia.
- CVE-2017-15410: Use after free in PDFium.
- CVE-2017-15411: Use after free in PDFium.
- CVE-2017-15412: Use after free in libXML.
- CVE-2017-15413: Type confusion in WebAssembly.
- CVE-2017-15415: Pointer information disclosure in IPC call.
- CVE-2017-15416: Out of bounds read in Blink.
- CVE-2017-15417: Cross origin information disclosure in Skia.
- CVE-2017-15418: Use of uninitialized value in Skia.
- CVE-2017-15419: Cross origin leak of redirect URL in Blink.
- CVE-2017-15420: URL spoofing in Omnibox.
- CVE-2017-15422: Integer overflow in ICU.
- CVE-2017-15423: Issue with SPAKE implementation in BoringSSL.
- CVE-2017-15424: URL Spoof in Omnibox.
- CVE-2017-15425: URL Spoof in Omnibox.
- CVE-2017-15426: URL Spoof in Omnibox.
- CVE-2017-15427: Insufficient blocking of JavaScript in Omnibox.
* debian/rules:
- replace allow_posix_
and use_thin_lto=false
- rename use_vulcanize GN flag to optimize_webui
- generate the man page as it's not being built with chromium any
longer (since commit 64b961499bebc54
- build gn with clang
* debian/
* debian/
* debian/
* debian/
debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
-- Olivier Tilloy <email address hidden> Thu, 07 Dec 2017 13:35:57 +0100
Changed in chromium-browser (Ubuntu): | |
status: | Fix Committed → Fix Released |
Launchpad Janitor (janitor) wrote : | #8 |
This bug was fixed in the package chromium-browser - 63.0.3239.
---------------
chromium-browser (63.0.3239.
* Upstream release: 63.0.3239.84
- CVE-2017-15407: Out of bounds write in QUIC.
- CVE-2017-15408: Heap buffer overflow in PDFium.
- CVE-2017-15409: Out of bounds write in Skia.
- CVE-2017-15410: Use after free in PDFium.
- CVE-2017-15411: Use after free in PDFium.
- CVE-2017-15412: Use after free in libXML.
- CVE-2017-15413: Type confusion in WebAssembly.
- CVE-2017-15415: Pointer information disclosure in IPC call.
- CVE-2017-15416: Out of bounds read in Blink.
- CVE-2017-15417: Cross origin information disclosure in Skia.
- CVE-2017-15418: Use of uninitialized value in Skia.
- CVE-2017-15419: Cross origin leak of redirect URL in Blink.
- CVE-2017-15420: URL spoofing in Omnibox.
- CVE-2017-15422: Integer overflow in ICU.
- CVE-2017-15423: Issue with SPAKE implementation in BoringSSL.
- CVE-2017-15424: URL Spoof in Omnibox.
- CVE-2017-15425: URL Spoof in Omnibox.
- CVE-2017-15426: URL Spoof in Omnibox.
- CVE-2017-15427: Insufficient blocking of JavaScript in Omnibox.
* debian/control: build-depend on gcc-mozilla (which is effectively gcc 4.9
on trusty)
* debian/rules:
- change use_gold GN flag to false
- remove linux_use_
- replace allow_posix_
and use_thin_lto=false
- rename use_vulcanize GN flag to optimize_webui
- generate the man page as it's not being built with chromium any
longer (since commit 64b961499bebc54
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
-- Olivier Tilloy <email address hidden> Thu, 07 Dec 2017 13:51:08 +0100
Changed in chromium-browser (Ubuntu): | |
status: | Fix Committed → Fix Released |
Launchpad Janitor (janitor) wrote : | #9 |
This bug was fixed in the package chromium-browser - 63.0.3239.
---------------
chromium-browser (63.0.3239.
* Upstream release: 63.0.3239.84
- CVE-2017-15407: Out of bounds write in QUIC.
- CVE-2017-15408: Heap buffer overflow in PDFium.
- CVE-2017-15409: Out of bounds write in Skia.
- CVE-2017-15410: Use after free in PDFium.
- CVE-2017-15411: Use after free in PDFium.
- CVE-2017-15412: Use after free in libXML.
- CVE-2017-15413: Type confusion in WebAssembly.
- CVE-2017-15415: Pointer information disclosure in IPC call.
- CVE-2017-15416: Out of bounds read in Blink.
- CVE-2017-15417: Cross origin information disclosure in Skia.
- CVE-2017-15418: Use of uninitialized value in Skia.
- CVE-2017-15419: Cross origin leak of redirect URL in Blink.
- CVE-2017-15420: URL spoofing in Omnibox.
- CVE-2017-15422: Integer overflow in ICU.
- CVE-2017-15423: Issue with SPAKE implementation in BoringSSL.
- CVE-2017-15424: URL Spoof in Omnibox.
- CVE-2017-15425: URL Spoof in Omnibox.
- CVE-2017-15426: URL Spoof in Omnibox.
- CVE-2017-15427: Insufficient blocking of JavaScript in Omnibox.
* debian/rules:
- replace allow_posix_
is_cfi=false and use_thin_lto=false
- rename use_vulcanize GN flag to optimize_webui
- generate the man page as it's not being built with chromium any
longer (since commit 64b961499bebc54
* debian/
* debian/
* debian/
* debian/
debian/
* debian/
debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
* debian/
-- Olivier Tilloy <email address hidden> Thu, 07 Dec 2017 13:28:26 +0100
Changed in chromium-browser (Ubuntu): | |
status: | Fix Committed → Fix Released |
Fink Nottle (finknottle) wrote : | #10 |
This is again broken with chromium 66 on 16.04. chrome is on v67 though. Some discussion about this: https:/
Olivier Tilloy (osomon) wrote : | #11 |
Just tested with chromium-browser 68.0.3440.
Fink Nottle (finknottle) wrote : | #12 |
Yes, this is working fine right now. For the past two releases, it would break whenever the chrome version was newer than chromium.
Status changed to 'Confirmed' because the bug affects multiple users.