[Bug 1424577] Re: Upgrade breaks Chrome update mechanism leaving users without any security updates
Marc Deslauriers
marc.deslauriers at canonical.com
Fri Feb 27 13:23:30 UTC 2015
The Chrome package from Google's website specifically includes a cron
job in /etc/cron.daily/google-chrome to monitor Ubuntu upgrades and re-
enables the repository. If it is not working correctly, please file a
bug with Chrome.
Thanks!
** Changed in: ubuntu-release-upgrader (Ubuntu)
Status: New => Won't Fix
--
You received this bug notification because you are a member of Ubuntu
Foundations Bugs, which is subscribed to ubuntu-release-upgrader in
Ubuntu.
https://bugs.launchpad.net/bugs/1424577
Title:
Upgrade breaks Chrome update mechanism leaving users without any
security updates
Status in ubuntu-release-upgrader package in Ubuntu:
Won't Fix
Bug description:
Users installing Chrome from the official Google download site (https://www.google.com/chrome/browser/desktop/index.htm)
get an additional repository added that works as the only mechanism for security and version updates for Chrome on Ubuntu. Upgrading Ubuntu to a new version silently (or at least with a hard to associate message) disables this repository without uninstalling Chrome, leaving users with a working but permanently frozen version of Chrome.
This leaves users open to all Chrome security problems found after the
upgrade and poses a severe security issue. Disabling a repository
without uninstalling applications relying on it for security updates
is just not a sane default and a lot worse than breaking applications
because the repository doesn't have versions for the new release. In
the case of Chrome leaving the repository activated would have
resulted in the right behavior.
I've been using Linux for over 10 years and noticed this happening on
my mums computer only because Gmail pointed out that the Chrome
version was no longer supported.
To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/ubuntu-release-upgrader/+bug/1424577/+subscriptions
More information about the foundations-bugs
mailing list