Accepted chromium 90.0.4430.212-1~deb10u1 (source) into oldstable-proposed-updates->oldstable-new, oldstable-proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512
Format: 1.8
Date: Sat, 15 May 2021 20:39:40 +0000
Source: chromium
Architecture: source
Version: 90.0.4430.212-1~deb10u1
Distribution: buster-security
Urgency: medium
Maintainer: Debian Chromium Team <chromium@packages.debian.org>
Changed-By: Michael Gilbert <mgilbert@debian.org>
Changes:
chromium (90.0.4430.212-1~deb10u1) buster-security; urgency=medium
.
* New upstream security release.
- CVE-2021-30506: Incorrect security UI in Web App Installs. Reported by
@retsew0x01
- CVE-2021-30507: Inappropriate implementation in Offline. Reported by
Alison Huffman
- CVE-2021-30508: Heap buffer overflow in Media Feeds. Reported by Leecraso
and Guang Gong
- CVE-2021-30509: Out of bounds write in Tab Strip. Reported by David Erceg
- CVE-2021-30510: Race in Aura. Reported by Weipeng Jiang
- CVE-2021-30511: Out of bounds read in Tab Groups. Reported by David Erceg
- CVE-2021-30512: Use after free in Notifications. Reported by ZhanJia Song
- CVE-2021-30513: Type Confusion in V8. Reported by Man Yue Mo
- CVE-2021-30514: Use after free in Autofill. Reported by koocola and Wang
- CVE-2021-30515: Use after free in File API. Reported by Rong Jian and
Guang Gong
- CVE-2021-30516: Heap buffer overflow in History. Reported by ZhanJia Song
- CVE-2021-30517: Type Confusion in V8. Reported by laural
- CVE-2021-30518: Heap buffer overflow in Reader Mode. Reported by Jun
Kokatsu
- CVE-2021-30519: Use after free in Payments. Reported by asnine
- CVE-2021-30520: Use after free in Tab Strip. Reported by Khalil Zhani
Checksums-Sha1:
4979129dee2e82a20f14869ec982ef600836628b 4298 chromium_90.0.4430.212-1~deb10u1.dsc
f18208172b74d7b55a953a35d4604a9084063e96 456217856 chromium_90.0.4430.212.orig.tar.xz
25700f8c309f55b93eca92244e5d2f119fc0ef0d 220320 chromium_90.0.4430.212-1~deb10u1.debian.tar.xz
c03598f2c6701443758223218259537f10ee3409 22879 chromium_90.0.4430.212-1~deb10u1_source.buildinfo
Checksums-Sha256:
73b2603d5918eea6a21c655e079a474cc36bbe729ecdb67273cc48c0cb4be562 4298 chromium_90.0.4430.212-1~deb10u1.dsc
f614b72223947a3991b37b9980a8dc83c4f00b9a863f629e2cf8af7e13ac6421 456217856 chromium_90.0.4430.212.orig.tar.xz
d28b8978a16083da01f56f154845c27458e55b8e29dd99637fbe71848866cbe5 220320 chromium_90.0.4430.212-1~deb10u1.debian.tar.xz
eb53dd12fbbbfa6054dc8304a78c3a50d2d16e5d50bfc09128a8f5aaf0bfc372 22879 chromium_90.0.4430.212-1~deb10u1_source.buildinfo
Files:
8087fbecb1b49f0f7fb9b82ae532b7b7 4298 web optional chromium_90.0.4430.212-1~deb10u1.dsc
6fcab1ab3e6fd9c90dd8e26d42606418 456217856 web optional chromium_90.0.4430.212.orig.tar.xz
3161f6cd7a318efd0acdcc7e6e790969 220320 web optional chromium_90.0.4430.212-1~deb10u1.debian.tar.xz
c05160d55514ff9f0f672e71f9a63d55 22879 web optional chromium_90.0.4430.212-1~deb10u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQQzBAEBCgAdFiEEIwTlZiOEpzUxIyp4mD40ZYkUaygFAmChNPgACgkQmD40ZYkU
aygIdSAArltAkdFrQNwjj3iFgdmNGNwyFGT2ChbX/rXlmZnLnpxqY/0KhNxRMvt3
kXA3a6ev15RcZ6TfOPUVej35Jo1847Bc43L48C9BoIR2JK1ZUkMdlQQ6u3/EbWhd
h6Vj2tYaWIKvGFTpLb15U8d15SpC3K0wMorC8/+QLGVc+IZm+Ng8xXK2eDUxGKqB
pCkxB9gzmUU9ot3BfdkjFmBeqWhNZcp2TBNBH7RJbEcohq4D+wkraC19OS24LYp+
uuL7PTpzOjTvgvfW/i87NUafhuAX49XiO4PiUh7wrY4D7UP0RPAul/jkrc06FDzU
7kCo/thS2r3YqvPt2a0MCpq1ql/JggBpY+irH+WH/sruuWEnqXATAnMQjjKbmh+C
mNCVjVOf5F2uUB7CcZJaVQ2Lq7pxGv8AVuX4sLccy/OaEZptXb6eHbDOcmucrpFk
fCKMLNMQjX/zPRuijGMo3oFkpOFb/Pxrb0i4CPA6xhOOqIbPFZtL7kzBo5RqJsxI
MbjV7F/BaIQk2F/8GKLIxjieSsxDvqOU1efJdM/mhe2y/9v4+Vdx/x4qKc2bWuUb
C3b0EaGy7mSDeSa3wOCQ36SK1NEwSSkSNtA+td8rh+1lRrsbX4mPPGHfuuStHvrZ
C4bIlOmbJaDaCiemerd+lwrEpbGZQgfqiQG25fhsVIuUXpRhd6zzkrLPW9FinusP
zz9efjdaBat/D24HjVtz6gvZ5M5P7PoWxRfIjwRM2+OpEJBKgq5kOFmK/anrT3JV
Zo1ZikWUdTEomOgKrmZjCS3a2kmaKRVZj3Q26vYaY/wb/bg4dPXf2JFhtrqCZ/w/
b3SrofEAGClO4KahBukQ895wd83X6aiZ3WjYtHPtwC08fLKI/AECwBSfi6G5h3nb
/FEFk977uBuC6UN0Y4Radt6UYkTT86Kj3E0B4Di6iltloj6I7OBEDsJRMFsqISAV
hXAul3kUrqk13j6g2E7gT4W0nNDTBXIEUkw2eyQ3YihoToJCD/aqkWvQZO2Hqh8Z
3x5Zr2fKy/ySWRK7dVfWz9VPrD7Fex7E7m3IVY9c+buIaztFrZLdzSLsp6Sr4ndn
YocPREKdD9mSweAh7ZjkFSwNpQT/pXpodfbJt3d1t2e2FnOUDeOheCQl5xyT40BQ
dP6VbPiwrfWalJvjPMIrRut6mZODyP5Xlh/hDhQ0/fEVzj/hEtVT8h5+4yIQGXE4
qCwd0Thti5JLevpUN6C8dSda+fV6voH5HVUayUE3+7Vw5W+k0n1CQwd8dUXqm6j1
rsBy5cFXJ/59qqrA9Y4J7eva18f4QYfY3Crqlvg5odVyQRu4sOoP+B8iH8I3NV5T
IzQ8U4JtHIEPH9iBMfPbKfapqSZK1w==
=LS6c
-----END PGP SIGNATURE-----
Reply to: