-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 10 Sep 2024 21:56:02 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: amd64 Version: 128.0.6613.137-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-csail-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (128.0.6613.137-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream security release. - CVE-2024-8636: Heap buffer overflow in Skia. Reported by Renan Rios (@hyhy_100). - CVE-2024-8637: Use after free in Media Router. Reported by lime(@limeSec_) from TIANGONG Team of Legendsec at QI-ANXIN Group. - CVE-2024-8638: Type Confusion in V8. Reported by Zhenghang Xiao (@Kipreyyy). - CVE-2024-8639: Use after free in Autofill. Reported by lime(@limeSec_) from TIANGONG Team of Legendsec at QI-ANXIN Group. . [ Timothy Pearson ] * d/patches/ppc64le: - core/add-ppc64-architecture-string.patch - fixes/fix-study-crash.patch . [ Daniel Richard G. ] * d/copyright: Add some more Files-Excluded: entries. * d/rules: Ensure all files in orig source tarball are user-writable. * d/patches/disable: - tests.patch: Break out SwiftShader tests deletion to... - tests-swiftshader.patch: ...a separate file, to simplify resolving conflicts with the ungoogled-chromium patch series. Checksums-Sha1: bd8524157fc02a67ec8d3f7ef78e9b4058e99bbe 4779212 chromium-common-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb d476a14994a41ad072317b147f874bb00ea8c269 10175168 chromium-common_128.0.6613.137-1~deb12u1_amd64.deb 3dcf9990874a30bed917652ce2a15718770e1687 34155836 chromium-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 77556ec184ee9997ab8bd0ceb37c627df7b71f87 6512964 chromium-driver_128.0.6613.137-1~deb12u1_amd64.deb e183e66a3d741b770f9fa8089918d0c5cb1f1f9b 13740 chromium-sandbox-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 6ac51f93f8e3f1bd0a9577ee812527a8511b2724 95084 chromium-sandbox_128.0.6613.137-1~deb12u1_amd64.deb 9c208c08e1f55fb4ea8ac22a7901de8e93368f22 27597596 chromium-shell-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 8de60eebc815f4276a1de9fffd4616fc0c28f2fe 51568056 chromium-shell_128.0.6613.137-1~deb12u1_amd64.deb 1860e3e107cef30fabb6794dbd75bef0be820aa8 24893 chromium_128.0.6613.137-1~deb12u1_amd64-buildd.buildinfo e3d2a5c60a6b8e8e8f374c57e57007251229b372 84269272 chromium_128.0.6613.137-1~deb12u1_amd64.deb Checksums-Sha256: 17aa1c0bc17e698a6cae45d0a4e07f3bc1ef5af53356b93e3be698312697585b 4779212 chromium-common-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb dfc5aaed59b52832c7fc31ff632b599e1d113596cf884ac3c66bd6d755f4f55c 10175168 chromium-common_128.0.6613.137-1~deb12u1_amd64.deb d10d0e863cb0b0b2d3112aeb4b3d3a73b59e800870e85a77790079355acc6778 34155836 chromium-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 75aa3520e6b61cac3e576070794d75659b081df23980576a04d75885cc42a6ac 6512964 chromium-driver_128.0.6613.137-1~deb12u1_amd64.deb ce54cb55cd35488d22ee9ee4d986023712915e69dce6e07f815769c8287929e7 13740 chromium-sandbox-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb da5dacd1af01246358eae54ec9555a01f1517cdd918f8da82c087e7c64ddc593 95084 chromium-sandbox_128.0.6613.137-1~deb12u1_amd64.deb 3ebb885601c864ee4207ae58ba64f91f6dd89d66a339a46d8a6b73a774c5110f 27597596 chromium-shell-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb d5db079de7bb0094de8840ffd43d63152fed89519604cc7b08614c51713194f7 51568056 chromium-shell_128.0.6613.137-1~deb12u1_amd64.deb da9842e686c274aec72327fac99f0beac0193473e4f5c5f667e11e7df8a38f34 24893 chromium_128.0.6613.137-1~deb12u1_amd64-buildd.buildinfo 27fc5a6f0995c5e354202fe3d24dcba48918ed6fa8a9b181c82f622086b50dee 84269272 chromium_128.0.6613.137-1~deb12u1_amd64.deb Files: b50de31dd742cfe3d6a3e5c765fd3340 4779212 debug optional chromium-common-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 336ec39cbfa5b897de3fbece55765490 10175168 web optional chromium-common_128.0.6613.137-1~deb12u1_amd64.deb 0d6938973606ec8cd49ca1a748f1a4e0 34155836 debug optional chromium-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb 11e817239d0649b8bfbb0c3020783bb2 6512964 web optional chromium-driver_128.0.6613.137-1~deb12u1_amd64.deb a13c63305ed2f3a59004ce26c33dcb8e 13740 debug optional chromium-sandbox-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb e82172280225e7c0ac41d143637d19e2 95084 web optional chromium-sandbox_128.0.6613.137-1~deb12u1_amd64.deb 7a9e9d96dbfcccbfa138ebac6cc84e04 27597596 debug optional chromium-shell-dbgsym_128.0.6613.137-1~deb12u1_amd64.deb ffa6d848ee4e6bcbf668a9a0cd299e17 51568056 web optional chromium-shell_128.0.6613.137-1~deb12u1_amd64.deb 105217aab16e63e1adfe65fb1ca4ba62 24893 web optional chromium_128.0.6613.137-1~deb12u1_amd64-buildd.buildinfo 8148e24d6717a047c03b9bb761d818cc 84269272 web optional chromium_128.0.6613.137-1~deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEvy6d65NNYPbL6IQIEQ1nooK/IAQFAmbh2pMACgkQEQ1nooK/ IATxxxAAjV0Y6l2q1ISEmuUu42Ororc10fifAXsaH03et4G1uLtzREATHjuqSdxo 3/jFGViPHT/nZpHs3LdpzjNwOKlaYq6nAE3nWHvDuKLByALj8ac5Y9N/wpuRq+np QcQZ0bvw6CnKJZGCwFbzMeCpDJE3dxlBeYiGO78gNwdMCXploCpZqXyZdAH+ii8l ZK/QQ02rVw4m61O/f0RGRE/9EcNo90nGp/SaDYF9d+/SDZuOPojvhC68l9lFgbrx IfZ4OVOHsvoUntILQDhmKjkVOS8OzjCYBevVfXX7Vxz257Qp/rY12k+9DEXXS8NW ZQ4oi1stiuPATqwgXcF3kGt4FuxHs4DwukWH+EYTccAPmhomYBBmA/1irAEwS2CC aMmaCpza2DL7oBcuuQknxbCXyny7g1qQgit8/A5EQDClr/t8Lt4TK+Nqm/DSrCUf b08z6xuF7Zq0Eu3rbTAo0UJ6N8MDa7xJUEeYKittIKn3HoppQTbN1g4RIVN2JyQs wdQG/IjEMNjtY/gsnA3wqhcQV0XAN+hJNiRZYxpklLc7XeFgN+DDVatrgUaXiyGi oL6DUq9g1l22tVCCMaRWyO1+YUObio5xEpp1RuSfF2mqlNHCVVWJyFOUTrUSloEk pTutn9IAG7zfazxoUgPvRoVw1jUAUL8o9uEgcxqw9PpGZ+sQvvA= =6m9p -----END PGP SIGNATURE-----