-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 08 Dec 2023 11:40:41 -0500 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: armhf Version: 120.0.6099.71-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (120.0.6099.71-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream stable release. - CVE-2023-6508: Use after free in Media Stream. Reported by Cassidy Kim(@cassidy6564). - CVE-2023-6509: Use after free in Side Panel Search. Reported by Khalil Zhani. - CVE-2023-6510: Use after free in Media Capture. Reported by [pwn2car]. - CVE-2023-6511: Inappropriate implementation in Autofill. Reported by Ahmed ElMasry. - CVE-2023-6512: Inappropriate implementation in Web Browser UI. Reported by Om Apip. * d/copyright: adjust path for chai.js & mocha.js deletion. - delete third_party/libsecret. * d/control: new build depends on libsecret-1-dev. * d/scripts/unbundle: keep bundled libhwy; it's not available in bullseye. - also keep vulkan_memory_allocator and flatbuffers. * d/patches: - fixes/gcc13-headers.patch: refresh. - fixes/blink-frags.patch: drop part of patch & refresh. - disable/catapult.patch: refresh. - disable/driver-chrome-path.patch: update for minor upstream changes. - ungoogled/disable-privacy-sandbox.patch: update from ungoogled-chromium. - ungoogled/disable-web-environment-integrity.patch: update from from ungoogled-chromium. - upstream/mojo.patch: update patch from upstream's git. - bookworm/clang16.patch: new patch working around upstream's clang18 flags. - upstream/nullptr_t.patch: more libstdc++13 build fixes. - upstream/string-include.patch: add a simple header include build fix. - fixes/absl-optional.patch: add a workaround for a clang bug (https://github.com/llvm/llvm-project/issues/50248) by providing our own 'optional' header. - bookworm/constcountrycode.patch: add workaround for older libstdc++. . [ Timothy Pearson ] * d/patches/ppc64le: - third_party/0001-Add-PPC64-support-for-libdav1d.patch: refresh for upstream changes - third_party/0002-third_party-libvpx-Remove-bad-ppc64-config.patch: refresh for upstream changes - third_party/0003-third_party-ffmpeg-Add-ppc64-generated-config.patch: regenerate - third_party/skia-vsx-instructions.patch: refresh for upstream changes - third_party/use-sysconf-page-size-on-ppc64.patch: refresh for upstream changes - Mass refresh all other patches against 120 codebase. No functional change. Checksums-Sha1: d84498e67c23fbe399dc5b5f1b9767615514fb84 1270536 chromium-common-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 7830bdc0178a92f73b87cdc4142ef58d022a2ebb 4873060 chromium-common_120.0.6099.71-1~deb12u1_armhf.deb 63f5c6815f65fac52ed180ce3c5b1b011d8daae8 31576076 chromium-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 61c4d7c23e1e400dba39597f71c0e01eff326be2 5659336 chromium-driver_120.0.6099.71-1~deb12u1_armhf.deb d1fbfdf178b119cda531803346c048b1acc2fbf8 12208 chromium-sandbox-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 50b2a22c9ea26e38523a04768f0eb0790d475ce4 84404 chromium-sandbox_120.0.6099.71-1~deb12u1_armhf.deb 58eaef682e7a6d6f2b9be2c5f8ce309cf574fdbc 25555612 chromium-shell-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 6870c590c56f6a978b0c441e0de2f6548d3585f9 46187612 chromium-shell_120.0.6099.71-1~deb12u1_armhf.deb 94f2b79cfc4c8afd374eec208629d829487fc89e 24369 chromium_120.0.6099.71-1~deb12u1_armhf-buildd.buildinfo 9e7cc3e7fc7c4fe6b1d8f5efb4a4df9ce0d9c161 66832824 chromium_120.0.6099.71-1~deb12u1_armhf.deb Checksums-Sha256: 0105a59d969f65d5d21403634f2fb25b5c72b3b7e5b85aad2e8f0ab6ab17cd64 1270536 chromium-common-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 80dea46a0f46dc8357cd654cda7344b77f2465ef236c1fdb652abb63ebea1c45 4873060 chromium-common_120.0.6099.71-1~deb12u1_armhf.deb d49071595e74bf5f231dcc61ed8f2bfd108c600246b93bc6a4ad789cc6db2787 31576076 chromium-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 8ea7b60ecc66ffc66e00396412233f973948fc3c6b8bf571e1c01294bde131b4 5659336 chromium-driver_120.0.6099.71-1~deb12u1_armhf.deb 9fbeb795cee346680636bb5493d3d28930b6d148477ecfa39c33fd5b623a819f 12208 chromium-sandbox-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb b5f4821f3a77f79317d6ad9069af346cb648f3f99a097d2cf2f448dcc2c5a9d0 84404 chromium-sandbox_120.0.6099.71-1~deb12u1_armhf.deb 8a404b967c000b43ea664e391552257e4022da5d6dbd16aa3fec4c81df7d8106 25555612 chromium-shell-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 3be4ef187c9c04e512542a75ab131b346e2b907911a5005f7efc93462bccf13a 46187612 chromium-shell_120.0.6099.71-1~deb12u1_armhf.deb aff05da3b1df85f0b23d0b9c53b043e0ba3680dd3a7ab6ee59d2ab2c1d37532b 24369 chromium_120.0.6099.71-1~deb12u1_armhf-buildd.buildinfo b79ac10a0e561e54197d088ed636b5482356ec2413e9afd7dd48eb59fcc96f14 66832824 chromium_120.0.6099.71-1~deb12u1_armhf.deb Files: 1096bc12d550787dc2feadcfd16bbc5b 1270536 debug optional chromium-common-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 01a4b348f3a8be4dd2e4a4d4d0c18df3 4873060 web optional chromium-common_120.0.6099.71-1~deb12u1_armhf.deb a8381ff60791e7300f9c0dd1caee8d99 31576076 debug optional chromium-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 318a8d382999714fde82260dd99af626 5659336 web optional chromium-driver_120.0.6099.71-1~deb12u1_armhf.deb 76f45adbc27133a87be83b9393878e4e 12208 debug optional chromium-sandbox-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb f275ddd1a604f3acefded4dd0d34aaa9 84404 web optional chromium-sandbox_120.0.6099.71-1~deb12u1_armhf.deb ca1994565c9b7103be2ac137a9f39e44 25555612 debug optional chromium-shell-dbgsym_120.0.6099.71-1~deb12u1_armhf.deb 90b3bde8e68c775ed58877e889de7334 46187612 web optional chromium-shell_120.0.6099.71-1~deb12u1_armhf.deb 7f08df52088ad7973b02ffa2f06f3928 24369 web optional chromium_120.0.6099.71-1~deb12u1_armhf-buildd.buildinfo 18e76d2d230eca744cf0de3397545255 66832824 web optional chromium_120.0.6099.71-1~deb12u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEBv+o19JDIRm4yIQ5CeROIpkCGwcFAmVz2F8ACgkQCeROIpkC GwcswA/9G5WpeYtOXrcKhfAA1RuFtabDlZLwwe20hSu9jO1+7mxUHEgSiPwqmIrr 4Gl1uyTaHELuZOre44V54X96S7qoZ7vwDgEZe1Ffz0LCxOJ04wd9VpOaokQ1crvq jbhEnW8dmKevMe1+eYn9aPbJcLnp81uofZtjGzN9TmRWS0RDoU8L0Uz4/2q1lM6R 50syL6AiGRGQIxycM+vUVWLWk4T51UBn7oLFTmNiFq3fNOMvfPoWTRHFoM3LUo5O ZItfqyH6g9zskeZBOVxGncjdv2ceqLmue4yfVIfv7MwEw3+13+e07tW0Dl8/o0YQ ClrUODQGIJfGNpDoMp2gdb7F45wNAGrr6XSbzOoHkAIvphQ+jP7TG/iq9nnOf/bK kaHxfMkxYMfpDA56nzCGCj/5w5I2oWre7uV9TSv7bp+mlpSpEaKcnNaeo+Ta+lto ol57OMMdSv7c1AJgnvaz9VNFlnXV1RkOtXznJ2rpxdcwpiQDBXdtfqPHx0v8OCtq zyoBTulLNCrfyolwMdj4tEkyPHWXJaUV96nRGHoGkcSaAZ0gZOWSHzde9+1an7At xz3iDSVESVbyoPAMwkQzvFsvjDs5CRuyVUpGmEIdw/q5eunfxHZPQQ4UGFraZD9D CPMjKg2SUcc/1w3BdUZQpKdgVm1eWU4/7xKJq5EG/JSz9z3ckzg= =ZNnk -----END PGP SIGNATURE-----