Accepted chromium 117.0.5938.132-1~deb11u1 (source) into oldstable-proposed-updates
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Thu, 28 Sep 2023 00:41:20 -0400
Source: chromium
Architecture: source
Version: 117.0.5938.132-1~deb11u1
Distribution: bullseye-security
Urgency: high
Maintainer: Debian Chromium Team <chromium@packages.debian.org>
Changed-By: Andres Salomon <dilinger@debian.org>
Changes:
chromium (117.0.5938.132-1~deb11u1) bullseye-security; urgency=high
.
* New upstream security release.
- CVE-2023-5217: Heap buffer overflow in vp8 encoding in libvpx.
Reported by Clément Lecigne of Google's Threat Analysis Group.
- CVE-2023-5186: Use after free in Passwords. Reported by [pwn2car].
- CVE-2023-5187: Use after free in Extensions. Reported by Thomas Orlita.
* d/patches:
- bookworm/i386-lock-free.patch: add to fix i386 build failure.
.
chromium (117.0.5938.92-1) unstable; urgency=high
.
* New upstream stable release.
* Enable NEON on armhf. See
<https://lists.debian.org/debian-devel/2023/09/msg00175.html>.
* Add check in d/rules & chromium wrapper to ensure we don't build or
run on non-NEON armhf machines.
Checksums-Sha1:
b93d3cfdd65232670cce3bb6b9e365443c8540be 3769 chromium_117.0.5938.132-1~deb11u1.dsc
a7a5223a74bb06881cfbd73f589734f927174235 683178832 chromium_117.0.5938.132.orig.tar.xz
d98d335a4f3074e6f5ac540d255a7c7ced605460 1514860 chromium_117.0.5938.132-1~deb11u1.debian.tar.xz
36b37c57ef59046d1ff69d9eada75e3d8ce3da30 23001 chromium_117.0.5938.132-1~deb11u1_source.buildinfo
Checksums-Sha256:
e7de11e2370972a0a47ac5027140504b44e40a18064b9f163e95250af97b18a4 3769 chromium_117.0.5938.132-1~deb11u1.dsc
f228b6a8abfbe134cd1cc03dd6057645851eb734fd17f38144c17996bd111fe2 683178832 chromium_117.0.5938.132.orig.tar.xz
835c078a7de7655e6337856037e9fc75b107690406d05a610681a6271e56a80a 1514860 chromium_117.0.5938.132-1~deb11u1.debian.tar.xz
6c6a501e68e3f04c2919a51ae0cec7bdf2279e1105b9ff3a48ba0dd81ec3ab07 23001 chromium_117.0.5938.132-1~deb11u1_source.buildinfo
Files:
14783da027d47bcbf2cc351767994f67 3769 web optional chromium_117.0.5938.132-1~deb11u1.dsc
97cedd66275ca38733a33ffd4233936c 683178832 web optional chromium_117.0.5938.132.orig.tar.xz
8d0f46b481c5b3afc70d3c8724fb8273 1514860 web optional chromium_117.0.5938.132-1~deb11u1.debian.tar.xz
23628cda1cadd511c55127d6477ce146 23001 web optional chromium_117.0.5938.132-1~deb11u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmUVO/YUHGRpbGluZ2Vy
QGRlYmlhbi5vcmcACgkQZF0CR8NudjcJbBAAh6ewAV/clU+mfRFynV0EMH7m4kP2
GQIjtiOAayWZsYHejw8ZnWCZpkEMaHwjz+7RrP610zPpwD00RFP5ex1FsbjaAx9k
H7Z0zI1gkYZcro2AvLhkolVqqfL4YB3PRbX6xO4kO7ojb/kT7L6wjXmXwKIUKb7S
O04U02X3JpkhP03x7ZFNr+yiE6Nr+KYgs7eLkwkBZ74KQF+R8K58g0oJADSoU0JI
XSxYiSXT87DGWs+Vj3yX1Dv/LlieaQxsQK+rIGBFObheL28DsYLLmSHcJsyzaZfY
EG1kzis3Yr4XqoznxscLR3ySvQVUR+mBWSyGE5at/mfiWK423be5lYjEpe5WmJsG
1VtnajeM19xECStFvIYigtvM4jZkRLimDp6RafhisvFfbBcVImrHmM/2kcDRFW1W
uDghl0KBElVqT8XMqJAwJdvpabhCARuwYN3SGvdV7HMCNzO4GOmHOGOb8+IFYgX9
6vl6R7cwgWbn46xngb5FYlW30B/5vLd9F36dDypHC8j7AEMr4Ld7VqLYSamL4nRF
7g7UNTVGaDB0PHHUpBmU5Pfj3jxY8pv5hCEfCHda7EXugPsmpWvv2npaQga5zVsR
Fmm9DSYqSz1ICAR86I7qP4tKFkNoXZbbAf5fT4DgudTz5TljVX58sw0foWJCEBzq
CHb0wnL5P7a/W0Y=
=29kO
-----END PGP SIGNATURE-----
Reply to: