-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 16 May 2024 18:55:41 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: ppc64el Version: 125.0.6422.60-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-conova-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (125.0.6422.60-1~deb12u1) bookworm-security; urgency=high . * New upstream stable release. - CVE-2024-4947: Type Confusion in V8. Reported by Vasily Berdnikov (@vaber_b) and Boris Larin (@oct0xor) of Kaspersky. - CVE-2024-4948: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-4949: Use after free in V8. Reported by Ganjiang Zhou(@refrain_areu) of ChaMd5-H1 team. - CVE-2024-4950: Inappropriate implementation in Downloads. Reported by Shaheen Fazim. * d/copyright: fix instrumented_libs deletion; upstream renamed it. * d/scripts/unbundle: bundle new requirement absl_crc (which is unavailable in bookworm). * d/patches: - upstream/uint-includes.patch: drop,merged upstream. - upstream/fps-optional.patch: drop, merged upstream. - upstream/span-optional.patch: drop, merged upstream. - upstream/extractor-bitset.patch: drop, merged upstream. - upstream/atomic.patch: drop, merged upstream. - upstream/webgpu-optional.patch: drop, merged upstream. - disable/catapult.patch: refresh. - i386/angle-lockfree.patch: drop, I _think_ it's no longer needed. - upstream/ruy-include.patch: add header build fix. - upstream/vulkan-include.patch: add header build fix. - upstream/mojo-bindings-include.patch: add header build fix. - upstream/appservice-include.patch: add header build fix. - upstream/no-vector-consts.patch: add build fix; gnu libstdc++ doesn't allow const types inside vectors. - upstream/lens-include.patch: add header build fix. - bookworm/nvt2.patch: drop (replace with a better non-revert patch). - bookworm/v8-wrappable.patch: add nvt2.patch build fix replacement that just defines a single struct member. - upstream/ninja.patch: add build fix for failure triggered by ninja-1.12. - fixes/bad-font-gc00000.patch: add formatting patch revert to make other patches easier to apply. - fixes/bad-font-gc2.patch: add a build failure fix & refresh. - fixes/bad-font-gc11.patch: add a build failure fix & refresh. - bookworm/bubble-contents.patch: refresh. - bookworm/omnibox-constexpr.patch: add constexpr -> const build fix. - upstream/tabstrip-include.patch: add header build fix. . [ Timothy Pearson ] * d/patches/ppc64le: - third_party/0001-Add-PPC64-support-for-boringssl.patch: Modify for upstream changes - third_party/0002-Add-PPC64-generated-files-for-boringssl.patch: Add pregenerated configuration for ppc64el support in BoringSSL - third_party/0002-third-party-boringssl-add-generated-files.patch: Rename to third_party/0002-Add-PPC64-generated-files-for-boringssl.patch - workarounds/HACK-debian-clang-disable-skia-musttail.patch: Refresh for upstream changes - third_party/skia-vsx-instructions.patch: Refresh for upstream changes - ffmpeg/0001-Add-support-for-ppc64.patch: Refresh for upstream changes Checksums-Sha1: a845e4bfc47741337f9270a714af145ed866536e 1268256 chromium-common-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 99023734af16bce8e9e89e6ee36d3c552ebc5f1b 5296960 chromium-common_125.0.6422.60-1~deb12u1_ppc64el.deb f9ac6756f81fbb005e76ea88af1bdf72d6383dbb 29624176 chromium-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb e88ae5031b17f56211d916645fe4fdb019ad3062 6694664 chromium-driver_125.0.6422.60-1~deb12u1_ppc64el.deb 3ae317edb4598850904ff7488b22da859181666d 14300 chromium-sandbox-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 996b78d24d7441e873e9c05acfa53627c91b444e 90304 chromium-sandbox_125.0.6422.60-1~deb12u1_ppc64el.deb 1dbdc391c1870c70043599009ca421d69f9173b2 24793596 chromium-shell-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 693d66e4c4fdadf2f04b8d9592949005a0b208d0 52398748 chromium-shell_125.0.6422.60-1~deb12u1_ppc64el.deb 93962e7ed1a01ee6e4fc96866b005927fa5e74f5 24635 chromium_125.0.6422.60-1~deb12u1_ppc64el-buildd.buildinfo df48b00a5c16aca01075448fc0a1451255d164db 74626276 chromium_125.0.6422.60-1~deb12u1_ppc64el.deb Checksums-Sha256: 9405407276630ccae160d606c3ae972b4437f663f16464c586afd26094f611ac 1268256 chromium-common-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 1cd89eb4fa50817d634cd43a6c4ada8f5cc53800badc94eb060921e408b6d454 5296960 chromium-common_125.0.6422.60-1~deb12u1_ppc64el.deb 18a47b07b7fe280666fca24cf8fc6c2c92c44ff401e7fe163d1500ca7268eff1 29624176 chromium-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb bf2e0d812b1f3cc98c5b21d63ea3bf344c84178659254b0fbd647ccf9a24143a 6694664 chromium-driver_125.0.6422.60-1~deb12u1_ppc64el.deb 12ba7dce2d89cb66668a726578685121912a21794b197145a4b7fc30a48e0520 14300 chromium-sandbox-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 45e2d4062bda3adb59bc0567cddbd2a76b9ddb4ec3df9e554db59ef3db144d89 90304 chromium-sandbox_125.0.6422.60-1~deb12u1_ppc64el.deb 150336af48c7ca2bcf822497bea3ff5daefca6bdfccef056af0a8ed3b02a4732 24793596 chromium-shell-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb bbca2c772a26d1eaef8b66fab27f94a8a3293f272678b134032e4a62953896bb 52398748 chromium-shell_125.0.6422.60-1~deb12u1_ppc64el.deb 1854bee9e1e34cb20b33c3c35069e567cd5ba1ba885087c34e818ac9103f9969 24635 chromium_125.0.6422.60-1~deb12u1_ppc64el-buildd.buildinfo 3db986077e786b76e9fb5df1b836ce79495f72983cee6a7ae028eabcd92bc0f1 74626276 chromium_125.0.6422.60-1~deb12u1_ppc64el.deb Files: e667ad2f7f6bd8520b461b62e0a67d88 1268256 debug optional chromium-common-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb f7f082e26dd731021223d0567231746f 5296960 web optional chromium-common_125.0.6422.60-1~deb12u1_ppc64el.deb 10ddada4fa3a5d331f94af633ac17c1b 29624176 debug optional chromium-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 05e14f2f3e237abb74abebbbb8fb3bd2 6694664 web optional chromium-driver_125.0.6422.60-1~deb12u1_ppc64el.deb 9cff4c59a15781ccad648bbd46a5a8b9 14300 debug optional chromium-sandbox-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb 760091ada6448c81501f6f6e8957288b 90304 web optional chromium-sandbox_125.0.6422.60-1~deb12u1_ppc64el.deb e3f4d6d5d0a4de1c3e0e73fb83f2726a 24793596 debug optional chromium-shell-dbgsym_125.0.6422.60-1~deb12u1_ppc64el.deb a1b1148938aee2251db8a8278199088f 52398748 web optional chromium-shell_125.0.6422.60-1~deb12u1_ppc64el.deb b57e756c18ad53b822f11bd0d0978639 24635 web optional chromium_125.0.6422.60-1~deb12u1_ppc64el-buildd.buildinfo 3508bd7ea99f83adfdaab4edf48bc207 74626276 web optional chromium_125.0.6422.60-1~deb12u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEE8YyVP0bbbFwKPsGN0jKBgzfto4IFAmZHb/YACgkQ0jKBgzft o4I3Iw//Qqe8djUFj0hemseLHRp2AnSru7Q/bn3VIryD7uG2TRfUVi3wpauepKww 1DrJHofHhlf/WSJk/Iq4ckjvDqQR9MtEuiR2mzksIppmPNNULJDgP2XQZbfxZ0U0 sLlo48it98R0YhRlwi+sdaFyqKNFPN/8LZbWxND8CApIjw8K5pSI7oYXel56W/x6 YU8p3Jcj3npPGt5Dqx68thu1Jk1eY8mjrrniQBfI26jDd2i5gAYSdkGzLnfI/lOB bqjD+QvezUpi3MgSOnghID3990eBsvTaC3RcmrqBs9/yyUSWYkPp5DFi0K5SNHfA doSkWknrS0t9AXAAJNITZNikQYDgvTLlEdSiScqo9J8zhm04vPifY+yEzrMPYGxY Et8cWi/qkIzf2BnhpwjUnrlM0xYNRv2XJ4jU60xpaSi3IF0lPLf/I88CLchG5nII Q5Dj+/DmyENOm24Outer4pvEXWpan+Enr5m+oGNPNx4wm1iKKOkfsaWCi6pav4Nu HPBW/wE/XgTZ1eqN9sTyTrGWhBmcwcdk4PhEBgqYd/zmzMR9zFSu9bBApCvf5TrX dyTLUIO2wVN3YmN9AI2pobA89/s+zWanUih82+hGmiRropqAyb7f68UAN0RKfbgE v/wjTVkV5KNX5YtC5cydQSzB15QreE2p5RI5rzlGTNKQ0kb4q/Q= =iQOE -----END PGP SIGNATURE-----