-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 30 May 2024 22:11:26 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: i386 Version: 125.0.6422.141-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-02) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (125.0.6422.141-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2024-5493: Heap buffer overflow in WebRTC. Reported by Cassidy Kim(@cassidy6564). - CVE-2024-5494: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-5495: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-5496: Use after free in Media Session. Reported by Cassidy Kim(@cassidy6564). - CVE-2024-5497: Out of bounds memory access in Keyboard Inputs. Reported by zh1x1an1221 of Ant Group Tianqiong Security Lab. - CVE-2024-5498: Use after free in Presentation API. - CVE-2024-5499: Out of bounds write in Streams API. * d/patches/fixes/libxml-parseerr.patch: move to bookworm directory. * d/control: add versioned build-dep on libxml2-dev < 2.10. Checksums-Sha1: 3450c9eaf62ff3b5b372bdb19407b5f842dd4d81 1182380 chromium-common-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 77ea11a1fd69eb2a7a3bd0ee61e276750fe12e45 5009048 chromium-common_125.0.6422.141-1~deb12u1_i386.deb 9b13cd07ef333d8698cc5c435da67fa5983cc4dd 35608708 chromium-dbgsym_125.0.6422.141-1~deb12u1_i386.deb de46a8831c965c20bb7154fc582de802a4a3fdfe 6398464 chromium-driver_125.0.6422.141-1~deb12u1_i386.deb 344af379f0f645c9ef2019ccb6f8e432595adfea 13956 chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 12c76b0e9fd98438f7826919df8f2f4b69e6682c 90340 chromium-sandbox_125.0.6422.141-1~deb12u1_i386.deb d4676331466d2e7a8039b390c021fa28079b0819 30957252 chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_i386.deb a08b4cae4ea471b33c1c786da67a4d9ddfa9ca88 53288584 chromium-shell_125.0.6422.141-1~deb12u1_i386.deb 2bcf3d05501bff8b67e1c44b5b755ab6a5a8ef0d 24744 chromium_125.0.6422.141-1~deb12u1_i386-buildd.buildinfo 11a90ed6ba07f12d515e0d9486e2dfefb7ca3b3b 76235660 chromium_125.0.6422.141-1~deb12u1_i386.deb Checksums-Sha256: 57aed8de5b984ccc4dc63dfe10efcfee81aa868c07129caee3978f9bad540902 1182380 chromium-common-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 41ec196a808c978e9c3a595ee2a51fa562e2350ca82426c3cc3703efc03ce4f3 5009048 chromium-common_125.0.6422.141-1~deb12u1_i386.deb da2a66ca4a0a28980d1b48cdee11baa111827648799df67a18f3de69bfa5a905 35608708 chromium-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 6b5571fe0fdec5a3ec34d9a4d593c7f648df255bcb45b480d014d1002e23535f 6398464 chromium-driver_125.0.6422.141-1~deb12u1_i386.deb 1cad85cb3d297c5ddbcbfb5c3e727b5d57d0e602a7b36aa4c2ef224657a298e5 13956 chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 166b9e74c03cec12cf60047111cc8d6ae7203eb00ca452a8b3cd10adbd130dfc 90340 chromium-sandbox_125.0.6422.141-1~deb12u1_i386.deb 80e079c2390058ebe5ea30c22a22b5245c4e7a7fd657cfac4da2eefccc675c6e 30957252 chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 2d76ccc1f2107dbba0d031cb35f6d73c09b23676d4a2de9663c51c9381b5838d 53288584 chromium-shell_125.0.6422.141-1~deb12u1_i386.deb c0fa823fa772624dbc8e1ecca50e763e259234ab0fc276d556f99d73e865e9cc 24744 chromium_125.0.6422.141-1~deb12u1_i386-buildd.buildinfo aa02530411e9b95830d4c90b23435a657ee1ce329d02d85df427a70bc3885bf9 76235660 chromium_125.0.6422.141-1~deb12u1_i386.deb Files: 765472e7936e266e589860cb0c313704 1182380 debug optional chromium-common-dbgsym_125.0.6422.141-1~deb12u1_i386.deb e5074f1cd51caf10adfd7e037609f085 5009048 web optional chromium-common_125.0.6422.141-1~deb12u1_i386.deb 19bd4c2d97fc00c21794f04b9f3dcaf1 35608708 debug optional chromium-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 648a7aa01752a8a463ad76dc4a12dfa3 6398464 web optional chromium-driver_125.0.6422.141-1~deb12u1_i386.deb f0cd82a7de2f468bb4426b5328917ac5 13956 debug optional chromium-sandbox-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 91d82cd1a9a258ec4e37c34907a239ee 90340 web optional chromium-sandbox_125.0.6422.141-1~deb12u1_i386.deb fb3a0a89aeaa10deedf49f21595a5ca7 30957252 debug optional chromium-shell-dbgsym_125.0.6422.141-1~deb12u1_i386.deb 8c4be674a73f97731ded17c767b1e82c 53288584 web optional chromium-shell_125.0.6422.141-1~deb12u1_i386.deb c0df35795a84fb17448bb2cbb7d1f374 24744 web optional chromium_125.0.6422.141-1~deb12u1_i386-buildd.buildinfo 0e7bd34aad73b6c657647bf1a998fdaf 76235660 web optional chromium_125.0.6422.141-1~deb12u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEErEDrIdpJkzFMm6K+PyQET5WCY90FAmZaDs4ACgkQPyQET5WC Y90Beg/9HEM/WgrPmoThJLS6EhSuuI10khFX8KBVUwdEkXPCD28h+lOrFwhNdOS8 ndd1NtWGxphC6Eq/YrON6FIBO/ismvS9LPFrDvsLh0QQgCTtRrdKWZpLn3WF10Vx fMNEN4cpnEFA94OjNInrG85UTwQWBlXrIvm0Zzlx0bEKfupgl2s02wYBiTUw1QLy NIv//ONbaOW1R2u0Cy9nvqxgPuUmedIZMTZpFUMsDQumTWxPQuiPJlIU9XdV1z9B Lx3E8L3RVLU3NNtPRNi1smH19EN3iVom9yBBBaN0cPy5L/h74IhrbPrdbpEA+vU6 BpZVC0/S+s7XjMnRi492ZpDVWODk+A+/0gLzDUdK1J/vFzWGpWtfohx3ZnvWJQ9L B2nDG/pxVL4bSDsxvs5akpX+oZ7Z0hfIMKm/Gs/Weq6o4WcdCzTPmRUkrvX4mhr7 idOXiPbRim8homfAtE3fgKNvyk74pOEyfuAJqmF+5og75sYj6OSZgvUwC/D/qUnI X3RbMvZpNnA+OwqJpnnNACzRePmkUFo9tw1i7AeHVFa4AqQmyI3DqVwTTYR2aw9E MZNCe3OU38cslYVtoRatMiqJfj5b0BFVg2sR52ORThK46V5eEEUZ4hoCwFGtCZK3 yl6UyPkPddnkb/j8/LZL/ovG+L2RBlLXcCSusGVa/gHFl1/DhkQ= =D4k9 -----END PGP SIGNATURE-----