-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 28 Sep 2023 00:41:20 -0400 Source: chromium Architecture: source Version: 117.0.5938.132-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Debian Chromium Team Changed-By: Andres Salomon Changes: chromium (117.0.5938.132-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2023-5217: Heap buffer overflow in vp8 encoding in libvpx. Reported by Clément Lecigne of Google's Threat Analysis Group. - CVE-2023-5186: Use after free in Passwords. Reported by [pwn2car]. - CVE-2023-5187: Use after free in Extensions. Reported by Thomas Orlita. * d/patches: - bookworm/i386-lock-free.patch: add to fix i386 build failure. . chromium (117.0.5938.92-1) unstable; urgency=high . * New upstream stable release. * Enable NEON on armhf. See . * Add check in d/rules & chromium wrapper to ensure we don't build or run on non-NEON armhf machines. Checksums-Sha1: b93d3cfdd65232670cce3bb6b9e365443c8540be 3769 chromium_117.0.5938.132-1~deb11u1.dsc a7a5223a74bb06881cfbd73f589734f927174235 683178832 chromium_117.0.5938.132.orig.tar.xz d98d335a4f3074e6f5ac540d255a7c7ced605460 1514860 chromium_117.0.5938.132-1~deb11u1.debian.tar.xz 36b37c57ef59046d1ff69d9eada75e3d8ce3da30 23001 chromium_117.0.5938.132-1~deb11u1_source.buildinfo Checksums-Sha256: e7de11e2370972a0a47ac5027140504b44e40a18064b9f163e95250af97b18a4 3769 chromium_117.0.5938.132-1~deb11u1.dsc f228b6a8abfbe134cd1cc03dd6057645851eb734fd17f38144c17996bd111fe2 683178832 chromium_117.0.5938.132.orig.tar.xz 835c078a7de7655e6337856037e9fc75b107690406d05a610681a6271e56a80a 1514860 chromium_117.0.5938.132-1~deb11u1.debian.tar.xz 6c6a501e68e3f04c2919a51ae0cec7bdf2279e1105b9ff3a48ba0dd81ec3ab07 23001 chromium_117.0.5938.132-1~deb11u1_source.buildinfo Files: 14783da027d47bcbf2cc351767994f67 3769 web optional chromium_117.0.5938.132-1~deb11u1.dsc 97cedd66275ca38733a33ffd4233936c 683178832 web optional chromium_117.0.5938.132.orig.tar.xz 8d0f46b481c5b3afc70d3c8724fb8273 1514860 web optional chromium_117.0.5938.132-1~deb11u1.debian.tar.xz 23628cda1cadd511c55127d6477ce146 23001 web optional chromium_117.0.5938.132-1~deb11u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmUVO/YUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjcJbBAAh6ewAV/clU+mfRFynV0EMH7m4kP2 GQIjtiOAayWZsYHejw8ZnWCZpkEMaHwjz+7RrP610zPpwD00RFP5ex1FsbjaAx9k H7Z0zI1gkYZcro2AvLhkolVqqfL4YB3PRbX6xO4kO7ojb/kT7L6wjXmXwKIUKb7S O04U02X3JpkhP03x7ZFNr+yiE6Nr+KYgs7eLkwkBZ74KQF+R8K58g0oJADSoU0JI XSxYiSXT87DGWs+Vj3yX1Dv/LlieaQxsQK+rIGBFObheL28DsYLLmSHcJsyzaZfY EG1kzis3Yr4XqoznxscLR3ySvQVUR+mBWSyGE5at/mfiWK423be5lYjEpe5WmJsG 1VtnajeM19xECStFvIYigtvM4jZkRLimDp6RafhisvFfbBcVImrHmM/2kcDRFW1W uDghl0KBElVqT8XMqJAwJdvpabhCARuwYN3SGvdV7HMCNzO4GOmHOGOb8+IFYgX9 6vl6R7cwgWbn46xngb5FYlW30B/5vLd9F36dDypHC8j7AEMr4Ld7VqLYSamL4nRF 7g7UNTVGaDB0PHHUpBmU5Pfj3jxY8pv5hCEfCHda7EXugPsmpWvv2npaQga5zVsR Fmm9DSYqSz1ICAR86I7qP4tKFkNoXZbbAf5fT4DgudTz5TljVX58sw0foWJCEBzq CHb0wnL5P7a/W0Y= =29kO -----END PGP SIGNATURE-----