-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 28 Sep 2023 00:41:20 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: ppc64el Version: 117.0.5938.132-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: ppc64el Build Daemon (ppc64el-osuosl-02) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Closes: 1053142 Changes: chromium (117.0.5938.132-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2023-5217: Heap buffer overflow in vp8 encoding in libvpx. Reported by Clément Lecigne of Google's Threat Analysis Group. - CVE-2023-5186: Use after free in Passwords. Reported by [pwn2car]. - CVE-2023-5187: Use after free in Extensions. Reported by Thomas Orlita. * d/patches: - bookworm/i386-lock-free.patch: add to fix i386 build failure. - bookworm/freetype-COLRV1.patch: disable using freetype's COLRV1 (closes: #1053142). Checksums-Sha1: 8be03503a746204eb7b41adc64797c6a6fb487a9 872196 chromium-common-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 61b61c412879dac00404e2847b4bbffb28a6f5e6 5193072 chromium-common_117.0.5938.132-1~deb12u1_ppc64el.deb 8ffe4de0641d01499a160b60d215998097bfc7b5 31235016 chromium-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 0369b2fb53ce13dbef597302c5275bfed997e772 5926804 chromium-driver_117.0.5938.132-1~deb12u1_ppc64el.deb 09c99b03d6f9afc2dfdd7eae5a17a8cea91a51d2 13056 chromium-sandbox-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb ec1f6a63297d223497336e8c6f9446dc40d46d8f 82360 chromium-sandbox_117.0.5938.132-1~deb12u1_ppc64el.deb 255f9566975282ede783ad9bab8a8dc84e546298 24117748 chromium-shell-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 3444ebc5cc8b478e58c7db179c0b68ed02c1de77 51048576 chromium-shell_117.0.5938.132-1~deb12u1_ppc64el.deb a731604638f01298be31e025aedf9971268a848a 24066 chromium_117.0.5938.132-1~deb12u1_ppc64el-buildd.buildinfo 468313503071dae98c6ded34dab00fec5705ac3f 73364688 chromium_117.0.5938.132-1~deb12u1_ppc64el.deb Checksums-Sha256: f43a59dcdf502559e6bfe5dede9ea97d4cb57a00cac5d0b33eedaf4d110392c0 872196 chromium-common-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb ce3887e14ef3bcc2bff7ad582c1d5c1bb3e9a48d97f4808f8bf5fe2af4e19440 5193072 chromium-common_117.0.5938.132-1~deb12u1_ppc64el.deb 41fb0921c217279e82650ed019df94c05a7bfcdba3009775e127387607885379 31235016 chromium-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 8db716b16afd6871a82ae59defa38dbae8217deb1d04b7f34eed50219290d6de 5926804 chromium-driver_117.0.5938.132-1~deb12u1_ppc64el.deb 83d41f3e211405301f83fbea73d76bea4789265a261de476b3c67f5341dcd575 13056 chromium-sandbox-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb b09c6af2ee2022b7509cb8ca6bd6291fd019578183cbe504952ce1ba566909dc 82360 chromium-sandbox_117.0.5938.132-1~deb12u1_ppc64el.deb d0ffb043f146807fd82723b50e6dc445bc55c26a8a8a6abacb466a2977ffebf8 24117748 chromium-shell-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 0d9c424f05e91b290fddd959a371331e2736c16fc6787f410bf9b92a7664e764 51048576 chromium-shell_117.0.5938.132-1~deb12u1_ppc64el.deb 0d6f89d07e8dd800ffb3a75e3584c1e70d642508ce3655d5a58c8ba7cbaf70da 24066 chromium_117.0.5938.132-1~deb12u1_ppc64el-buildd.buildinfo 7b08ffb58c87894acf6a4662e127648ad1ccb17e43accc22f5e85b78991272ee 73364688 chromium_117.0.5938.132-1~deb12u1_ppc64el.deb Files: 2f8e55f0a9af1fdfb8f0dd4ad5581224 872196 debug optional chromium-common-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb a827c8b87af4cc0e91a8fcd50a407790 5193072 web optional chromium-common_117.0.5938.132-1~deb12u1_ppc64el.deb b82bb20d3d62a1ae9cc05cf74a4e2bdb 31235016 debug optional chromium-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb baa180b5076aa7c5ff2f0ed2d5dc79a9 5926804 web optional chromium-driver_117.0.5938.132-1~deb12u1_ppc64el.deb c4ecb6e4bd252ef9ec0f97df05763a29 13056 debug optional chromium-sandbox-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb a568d3218acba6ba701ffc9e6755fd6f 82360 web optional chromium-sandbox_117.0.5938.132-1~deb12u1_ppc64el.deb 1a600c361cf2e1355fee22335f70dd51 24117748 debug optional chromium-shell-dbgsym_117.0.5938.132-1~deb12u1_ppc64el.deb 54c97ec87ef9c5dcdebaf9202958ac31 51048576 web optional chromium-shell_117.0.5938.132-1~deb12u1_ppc64el.deb 232be3c2233d1c9edcc6990102e1820d 24066 web optional chromium_117.0.5938.132-1~deb12u1_ppc64el-buildd.buildinfo 2d47a40956305af77af2ec1613f21770 73364688 web optional chromium_117.0.5938.132-1~deb12u1_ppc64el.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEHDNCkvGgp2XShfnByW8ECaj2byoFAmUWHCYACgkQyW8ECaj2 byobAA//YICxmzsetSHz3kaGlyGeubTScR3Hrf2xVsEWZMdXRV4DSJHBsrkcoo2k oOb+lF4cFC/r2H2Y4o9bnAI/RW7fbA74IYhjS4kdh8uet+AnOJ/sHcRvBNFjELhd 6uiHHpCExseik4kn4TYqrnzD/DdrBvx8MKvfhWGDu5x5F4dQ6jP2+bxG+qcsG186 +b2eQK7gFuLiNTbUyVG+1oQEihakLlLjDC6UZVAbt9K7t+gwMu/cOwAwSTIa/jk6 ufeIcQ4Pou+ScjXjtc7oY0/ocbX1+C2OwtCP6L4yObCCvY7zRqbljNbV/dtfe7d2 pvrIW+kSq3bVxyc40VV3xn9C7N1JXL1V4CLv5Lw0AWehSo02BTCfpW22KJA3xfjC f+3AQu4QYb3kac1Eog9ZRFM3dU/Pgk+xR7pSPeEq2DA+JdaSelddZpM2JT68DUAm g5aDX0+1pMDUTtcVZjIYuHaChAe6A99rLdGSjcrqhOoYtpVKQB1mT3nrPRP1E48r kK+sfkJgXOG2a4Mgh2nh+lnYRFyExcEOp8dfzj9PBIAmBIXmFNiDA0pQyLBv/TQc cHRxjXIWqtr+VSe1BZeG9kHSuVtZenzInKC6mFgw4BuH9SaGmQgfGJuGkjTozJVB rRhYgJ817Q46I4Uc9YMBsC0sHuZXIAUV/35/OAqgCBFVd1EHIxM= =rSxT -----END PGP SIGNATURE-----