-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 21 Nov 2024 16:12:03 -0500 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: ppc64el Version: 131.0.6778.85-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-conova-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (131.0.6778.85-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream stable release. - CVE-2024-11110: Inappropriate implementation in Blink. Reported by Vsevolod Kokorin (Slonser) of Solidlab. - CVE-2024-11111: Inappropriate implementation in Autofill. Reported by Narendra Bhati, Suma Soft Pvt. Ltd - Pune (India). - CVE-2024-11112: Use after free in Media. Reported by Nan Wang(@eternalsakura13) and Zhenghang Xiao(@Kipreyyy) of 360 Vulnerability Research Institute. - CVE-2024-11113: Use after free in Accessibility. Reported by Weipeng Jiang (@Krace) of VRI. - CVE-2024-11114: Inappropriate implementation in Views. Reported by Micky. - CVE-2024-11115: Insufficient policy enforcement in Navigation. Reported by mastersplinter. - CVE-2024-11116: Inappropriate implementation in Paint. Reported by Thomas Orlita. - CVE-2024-11117: Inappropriate implementation in FileSystem. Reported by Ameen Basha M K. - CVE-2024-11395: Type Confusion in V8. Reported by Anonymous. * d/patches: - upstream/wayland-gbm-pixmap.patch: drop, merged upstream. - disable/catapult.patch: refresh. - fixes/bindgen.patch: refresh. - fixes/freetype.patch: add new patch to fix missing enable_freetype arg declaration. - fixes/updater-test.patch: add simple build fix for deleted third_party/updater/. - upstream/stack-header.patch: drop, merged upstream. - bookworm/clang16.patch: refresh. - bookworm/bubble-contents.patch: refresh. - bookworm/constexpr.patch: refresh. - bookworm/gn-absl.patch: add a few more places where libs needed to be made visible. - bookworm/gn-funcs.patch: add another deletion of newer gn features. - bookworm/constexpr-assert.patch: add patch to work around more clang-16 constexpr bugs; this time a fun one with branching optimizations. Whee! . [ Timothy Pearson ] * d/patches/ppc64le: - workarounds/HACK-debian-clang-disable-pa-musttail.patch: Work around additional upstream musttail definitions - workarounds/HACK-debian-clang-disable-base-musttail.patch: Refresh for upstream changes - third_party/0002-third_party-libvpx-Remove-bad-ppc64-config.patch: Refresh for upstream changes Checksums-Sha1: be4879d2bccb517ef3c660a801d6b652f4816354 5202724 chromium-common-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 246568aea53f3d8df1e00cf296446dc12564fb99 14380336 chromium-common_131.0.6778.85-1~deb12u1_ppc64el.deb 232cefbca3c602529ade3f5582fc4020d74bc886 27639736 chromium-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb c9ac9640d170fa44cf433651ffb7200ebe04fdd7 6960028 chromium-driver_131.0.6778.85-1~deb12u1_ppc64el.deb c2918336e2d21dc1e30133835835fb7468d207a0 14344 chromium-sandbox-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 0003497a7546e48c88262652e151fa1571d248ca 97736 chromium-sandbox_131.0.6778.85-1~deb12u1_ppc64el.deb 6e69fddac61a1056d3500ef1ea172b8409e08cb8 22569780 chromium-shell-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 5f993f1bbb35f03af16aad31cdd0e1347326312f 50485368 chromium-shell_131.0.6778.85-1~deb12u1_ppc64el.deb 0f50818a8577297617b6317db7fd7a60632c37da 24836 chromium_131.0.6778.85-1~deb12u1_ppc64el-buildd.buildinfo 31ac840d8290cf1b23d1aa47accec9ca4802326c 83389404 chromium_131.0.6778.85-1~deb12u1_ppc64el.deb Checksums-Sha256: d609b66ff9740baad276bc333ae5af28422bc153910a8478cd556fb82a1dc5a5 5202724 chromium-common-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 18c41c2f147f4590da415164aceb13fea52ddcf0df240fa893b196b8136a3232 14380336 chromium-common_131.0.6778.85-1~deb12u1_ppc64el.deb d8163fef0639ff29e9d284cc031f24f55a70719f3b60b0421a24fb30e29e0294 27639736 chromium-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 981c28f4bb3114c1bd77bb2498c73ded3e894d8d6295f1c5e6a55494519da8c9 6960028 chromium-driver_131.0.6778.85-1~deb12u1_ppc64el.deb d57fe228dae1c78f950093e3f94886ce519be2b71fe1262a5eed516a104337b8 14344 chromium-sandbox-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb c5e7efe68ebcab072456686f882dda79c9bd51f2e4d824c3895cb17c20aae5c1 97736 chromium-sandbox_131.0.6778.85-1~deb12u1_ppc64el.deb bcc1d8c930a189b260498829485d11eed942d428498d26a2b81f036e3fe4a3b2 22569780 chromium-shell-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 5d3f01481ce0c4b2c17b312c00d4496bf0b5307edd52e8b1d7d5ed5c4c974312 50485368 chromium-shell_131.0.6778.85-1~deb12u1_ppc64el.deb 9d169c25369fca05983530bf486fa354cf2b054da6099aaff6bcf9a7a1ec9573 24836 chromium_131.0.6778.85-1~deb12u1_ppc64el-buildd.buildinfo a037aa48b401f8f95438c40c3a48e6813dce59039fc79a9c3bb2712460807312 83389404 chromium_131.0.6778.85-1~deb12u1_ppc64el.deb Files: cc0ad4f02d605bd2f6be5ed2432b6fd6 5202724 debug optional chromium-common-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 279665db1b4ba294a97ce171b05f2639 14380336 web optional chromium-common_131.0.6778.85-1~deb12u1_ppc64el.deb af6c6d3bd0055636236b07aa7476a2ee 27639736 debug optional chromium-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb f6a797dbedd1c1ba1fdf74d794835ad7 6960028 web optional chromium-driver_131.0.6778.85-1~deb12u1_ppc64el.deb 0cb2cad70dfdb4b4948eee8a5e3cc99f 14344 debug optional chromium-sandbox-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb 868d2e4a31fc06f6bfa66bcde8c235aa 97736 web optional chromium-sandbox_131.0.6778.85-1~deb12u1_ppc64el.deb ed76e0be7e8c06e88bbc77e72bc196ca 22569780 debug optional chromium-shell-dbgsym_131.0.6778.85-1~deb12u1_ppc64el.deb f54be965ce08b148b31f6fa2f0fb4599 50485368 web optional chromium-shell_131.0.6778.85-1~deb12u1_ppc64el.deb 6b03bb784a50f9228b61399263911029 24836 web optional chromium_131.0.6778.85-1~deb12u1_ppc64el-buildd.buildinfo e5c955bf7cc6815b3b344a0050119d07 83389404 web optional chromium_131.0.6778.85-1~deb12u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE8YyVP0bbbFwKPsGN0jKBgzfto4IFAmdBkmIACgkQ0jKBgzft o4I1DxAAoA5rAlPMFagySQ/Ltq+zbueEO4qJqAQyOnXE+BHnnWoLyf285SnV9ZPy waaVjJwYQFexkjz72KRtyIFWJRkGkWIzqpcCXPZf2blGGYeRc+WlUpp6DUClZ7wE 0/KZz0O9K4uG62oT6D4kPEHKttsbMvNFiAkCO+p7h1Mb489E23WimyKb/PbuEOwW 08oY2XTEZ0CRIbh7eeyjd8w743Fx/pWKGVITM4wKGbczMRKdQ684Sz4kd6Rapo47 4wc+V/2wDflGnM+l6vmKGpJ+2hZJWwOIqXs3/AH0/2Qoa67L3/MwDFr0d3BdLs/t DK2iCBBCOADCbCohd3ksS70XLX/W+yjs4nciKl9avT0Enhg2OZ6lXbQMhXk03vjj n4XgHKUhLXPvnhgJktX8bpozXQ1jGvoD+gmYsXR7jmxB09ddpKUeGoCJMx+KPiyT SibUsfGy0a8e/Q/yxSbF4XS+GgNdwZBvEkDO/eFbe+bWqIoPeS1OXTS5yHzd5oet 1VwZZxwzbcAyySl18Qh5Hery91PndjUokdyW0wnaufdwkCNaLORtC9uQXtBXm+sC 0hlLAHh91vf6iKFdJJsPZXYmylcs7gCeDHdl3mPUTXtHXPqtUZp2uqyfDefVvxqR cQx11fIP0LNlNeg6hOhawB+0wGxVNRpIoO/4VjA6y0dVxHLSSlw= =SdY0 -----END PGP SIGNATURE-----