Accepted chromium 115.0.5790.170-1~deb12u1 (source) into proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Wed, 02 Aug 2023 19:26:52 -0400
Source: chromium
Architecture: source
Version: 115.0.5790.170-1~deb12u1
Distribution: bookworm-security
Urgency: high
Maintainer: Debian Chromium Team <chromium@packages.debian.org>
Changed-By: Andres Salomon <dilinger@debian.org>
Changes:
chromium (115.0.5790.170-1~deb12u1) bookworm-security; urgency=high
.
* New upstream security release.
- CVE-2023-4068: Type Confusion in V8. Reported by Jerry.
- CVE-2023-4069: Type Confusion in V8.
Reported by Man Yue Mo of GitHub Security Lab.
- CVE-2023-4070: Type Confusion in V8. Reported by Jerry.
- CVE-2023-4071: Heap buffer overflow in Visuals.
Reported by Guang and Weipeng Jiang of VRI.
- CVE-2023-4072: Out of bounds read and write in WebGL.
Reported by Apple Security Engineering and Architecture (SEAR).
- CVE-2023-4073: Out of bounds memory access in ANGLE.
Reported by Jaehun Jeong(@n3sk) of Theori.
- CVE-2023-4074: Use after free in Blink Task Scheduling.
Reported by Anonymous.
- CVE-2023-4075: Use after free in Cast.
Reported by Cassidy Kim(@cassidy6564).
- CVE-2023-4076: Use after free in WebRTC.
Reported by Natalie Silvanovich of Google Project Zero.
- CVE-2023-4077: Insufficient data validation in Extensions.
Reported by Anonymous.
- CVE-2023-4078: Inappropriate implementation in Extensions.
Reported by Anonymous.
* debian/patches/disable/driver-chrome-path.patch: refresh for minor changes.
.
chromium (115.0.5790.102-2) unstable; urgency=high
.
* debian/patches/upstream/contains.patch:Yet Another v4l2 ARM build fix.
.
chromium (115.0.5790.102-1) unstable; urgency=high
.
* New upstream stable release.
* debian/patches/upstream/statelessV4L2.patch: add v4l2 build fix.
.
chromium (115.0.5790.98-2) unstable; urgency=high
.
* Add build fix for gcc13 on arm64.
Checksums-Sha1:
d638d10c280d650b972b87330df79db54b00cfb3 3733 chromium_115.0.5790.170-1~deb12u1.dsc
84346dac19e2244fc841525afa08fc372ae93498 647252736 chromium_115.0.5790.170.orig.tar.xz
f0604501129e324dc8ba13900361ff9fbba2c691 372996 chromium_115.0.5790.170-1~deb12u1.debian.tar.xz
2f36ac5a741439ac09ff35b4440adeeecb75a13a 21216 chromium_115.0.5790.170-1~deb12u1_source.buildinfo
Checksums-Sha256:
024af23c6109d18cf7621ec5e0fe095e7f0401dbeb857319e57acc983b7a1ffa 3733 chromium_115.0.5790.170-1~deb12u1.dsc
5483e41fdad9d14e6dd8e126e7d5ec5920493c8df3eb308654850fd773f0333f 647252736 chromium_115.0.5790.170.orig.tar.xz
9ff04b55aaa6c29a146756cf61f58565a468a9eeea232dc34585f9a79674d52c 372996 chromium_115.0.5790.170-1~deb12u1.debian.tar.xz
477647ced81240fd72ca12e97620cff7c2e1b4d27483ec569d33fc5b2c82ca88 21216 chromium_115.0.5790.170-1~deb12u1_source.buildinfo
Files:
d79116a5f1a125831740d70acd582661 3733 web optional chromium_115.0.5790.170-1~deb12u1.dsc
e0fa91758abb49c9ea0069d0a7e2a579 647252736 web optional chromium_115.0.5790.170.orig.tar.xz
2eb4dd348582b53a196b0d10067627fe 372996 web optional chromium_115.0.5790.170-1~deb12u1.debian.tar.xz
60c7c159f3cb47d7bebab695ea6e5df3 21216 web optional chromium_115.0.5790.170-1~deb12u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmTLaHwUHGRpbGluZ2Vy
QGRlYmlhbi5vcmcACgkQZF0CR8NudjeJvw/+LkxJsf2Lh3cFCqsuAgfs451jhJmG
HMpqfJgvb4oVfdV9LI7Pz5oZglrCqYMpvq48hoRj3343L6Mvyc43joS4zWtQZuFu
PAW3wiksuB7zUYzdSyxX5KQJnq75dwKT07FkIfLaCCDq3FJ/yYDVLu8jvKv84rip
QvBHtW6Nu2p4OX4pyTLEHBO1FkNUZuZwlh66ZPDT9V/wZRQbMKPftlYQqZdjzT2O
gxuPDarjp5D5MVkOkZw0IVzMagSqNt0n2lXhdeAYqNfip9sYQyd8Z3s8PmaVSxN1
ra6EXoF44RfxuQp0e3OfSThYW9/oNSDa5+zSbOjliMHWFZ8amQv6gvuIHFoV5j1f
dq7umRijcyh3msWsxlW1szSBWCIeOan6Y638IBwffRARDifNDaKhEPZryhOiiOzl
FSKhd4zBACIaW2XU/Dw5D1BU+YW+0SvrrZhjec7qLXWdcmOulnqOMAQo88NLjHLi
AWKP54LVbCBtXwhBoy4R8Yp2thseVe29V4xvNKryz+5QBoubrNHfEp3qM1oougjH
oN4O/Y5ZMYU3jZMTf4WtgSeD7oCUQ9pZF+5ycmE1zNbcQujGDXpUiQ6JKuonmdwW
Wx0kQqxJVFY0uu+FD2+vbwWTJU0ExyN2PwTIyESvxoGtd3Mua28KjlbMKzp4oUDX
YcVTF25b0wd87Yk=
=W+zH
-----END PGP SIGNATURE-----
Reply to: