-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 30 May 2024 22:11:26 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: amd64 Version: 125.0.6422.141-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (125.0.6422.141-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2024-5493: Heap buffer overflow in WebRTC. Reported by Cassidy Kim(@cassidy6564). - CVE-2024-5494: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-5495: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-5496: Use after free in Media Session. Reported by Cassidy Kim(@cassidy6564). - CVE-2024-5497: Out of bounds memory access in Keyboard Inputs. Reported by zh1x1an1221 of Ant Group Tianqiong Security Lab. - CVE-2024-5498: Use after free in Presentation API. - CVE-2024-5499: Out of bounds write in Streams API. * d/patches/fixes/libxml-parseerr.patch: move to bookworm directory. * d/control: add versioned build-dep on libxml2-dev < 2.10. Checksums-Sha1: 3bbaa219352330ef5526397efcab8dab4b2b78d0 1225680 chromium-common-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb bc3a392e947502716051d4d3f68499d51fa7487b 5015396 chromium-common_125.0.6422.141-1~deb12u1_amd64.deb 9696a5e99f8875cb0b838e05a8d0113cd726f3a7 35480648 chromium-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 5e78f0101ccd0ff4ed3c38a0a8a09870d0f18f89 6203204 chromium-driver_125.0.6422.141-1~deb12u1_amd64.deb d11264a91efaea899aa054c95e4121be15fb05cb 14124 chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 3a9e517b4c38c89bf5caada8616ad46a1f1c3319 90500 chromium-sandbox_125.0.6422.141-1~deb12u1_amd64.deb 3dc899f5fbd26097733fb288c0f1699f32d3d869 30847992 chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb f4ef498768886d0c42cb1f77c962a94fbdaa03e9 52200188 chromium-shell_125.0.6422.141-1~deb12u1_amd64.deb 6b40939147cf499731884ccbe08e32ae89cd0576 24748 chromium_125.0.6422.141-1~deb12u1_amd64-buildd.buildinfo 588b3cf457b2863c559ee9743619bcbeaf88e627 74470596 chromium_125.0.6422.141-1~deb12u1_amd64.deb Checksums-Sha256: 17d3e59336ea811d15c6c5ca543b1988a1df1fd18a7a29078c2d36b857fa70cc 1225680 chromium-common-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 34c03d2caf1897919fb0792c107869c0f1f8af8f536543e852a446bbe6f8864a 5015396 chromium-common_125.0.6422.141-1~deb12u1_amd64.deb 6e3d425c5ed806e3420f19e6fe7250dcf2d6e94974650067d83e95ec8eda23a3 35480648 chromium-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb fba29fab1ffe856c0a5b2aa7d98fe49ce86046c51e4472870f90666885b08e20 6203204 chromium-driver_125.0.6422.141-1~deb12u1_amd64.deb 7dac7f4aeaa52370651fd95bb1e4fb5ba6531f4b5f4b54f778bb61c141bcd979 14124 chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 42318fb68369b5b7f76dc6a2ca8075eb14eb38b157a17c8cba629c7be0b705b6 90500 chromium-sandbox_125.0.6422.141-1~deb12u1_amd64.deb 12fd00c625a1bcd1b689785ac99197aba60c77d628228dc5d4203e31aaef41b9 30847992 chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 6645dd67966250345b5a4c0f9c9492a5a2c46cf353a189cc2f0a30b890a517c8 52200188 chromium-shell_125.0.6422.141-1~deb12u1_amd64.deb 46dbdfa28695125519fda3464f906d94a76195607e7ff5574208edd4db28c11f 24748 chromium_125.0.6422.141-1~deb12u1_amd64-buildd.buildinfo 7cab5c29b745b1e70ef814d06d1de94955f06a93241bd4fd1c849bf6ae579bbd 74470596 chromium_125.0.6422.141-1~deb12u1_amd64.deb Files: 67937a46b80ba00f0ab165702926d0a2 1225680 debug optional chromium-common-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 0997dd09c2144cb11673f0e2a5aad484 5015396 web optional chromium-common_125.0.6422.141-1~deb12u1_amd64.deb 0658c1b2f9491a2cf84fea97069b11ca 35480648 debug optional chromium-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb 40467fab39273f1a942a5fc8036f1eb6 6203204 web optional chromium-driver_125.0.6422.141-1~deb12u1_amd64.deb 066445fee04d73bc30b12a66bee45f3a 14124 debug optional chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb f4fefd42976c1e86c4d8191bf9ebf9db 90500 web optional chromium-sandbox_125.0.6422.141-1~deb12u1_amd64.deb f3395b38f2031591b24f0a66e9627071 30847992 debug optional chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_amd64.deb f44b299ef879aeba05f933a37cd352f7 52200188 web optional chromium-shell_125.0.6422.141-1~deb12u1_amd64.deb 5fae18872545bdd63091c39099ebdd9f 24748 web optional chromium_125.0.6422.141-1~deb12u1_amd64-buildd.buildinfo e4bb46597c51a08225ddfb1e481d2ec2 74470596 web optional chromium_125.0.6422.141-1~deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvy6d65NNYPbL6IQIEQ1nooK/IAQFAmZaAAMACgkQEQ1nooK/ IATctQ//a747Xfgxslo5f2XRD5ofsNo7uacbfImdjhQbfBAchDXeF40QzEFvH8bm lD4VN8QFfEOsG13RexrRoNA6F44YVcMZD5sBWXwJrNnixUi6w3bR5M2eOrmf/I+f 4X+fbRG4/9+esSEg7ccqL8DypKrJEe5bnuiM8YXja+p0UIpj7rHU/4AsIV6tqFHi H7YDInY2b97xd17SzR97wuAnPoLhgrmxY9YrW+BdwJSh99pk1PcWjjyaHGlOOBDY NhTWFMbnuuT+uVY/2pUHEq8Ea8rAV1Xc9M7UxoPrygh8lVMQDPwxi2FYOa+JRz23 UjJbu6CyHRZxNp6WwWq9qiFZMCXltvdoAPlOZt85uJiqCTYPdcUXjv7wRULSvQnQ HKuBY0+nL6k1OI2Wv6fOXPk381qHEhZ0LV/gkiWVMgZh81mYbsgmtnbC8OUhXvpj 1mR6UJLh6VgK5rgBk0irgvCqOpSDL+CQ8AW0Lb7MTefQXHCOU9e67ddc/aX9OnEU 3YrgLMbGLYF9gMPCzTIDqcIBUFZ5zsNl3Y1gc6PlR5qOpyJ3m4SJ/o2lGjZhmRJx KMdqjH9ikO+xmiLlJYceIyQ3oll4MQOQYlZ0iITcV3+M1WEkh6aN7dEkAT23ubty xVvZJZC0ysxRaqknFfQgvVYrjP4yzFOakRmeeWLKBfD+dG4J3YQ= =rXck -----END PGP SIGNATURE-----