-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Thu, 20 Feb 2025 00:16:49 -0500
Source: chromium
Architecture: source
Version: 133.0.6943.126-1~deb12u1
Distribution: bookworm-security
Urgency: high
Maintainer: Debian Chromium Team <
chromium@packages.debian.org>
Changed-By: Andres Salomon <
dilinger@debian.org>
Changes:
chromium (133.0.6943.126-1~deb12u1) bookworm-security; urgency=high
.
* New upstream security release.
- CVE-2025-0999: Heap buffer overflow in V8.
Reported by Seunghyun Lee (@0x10n).
- CVE-2025-1426: Heap buffer overflow in GPU.
Reported by un3xploitable && GF.
- CVE-2025-1006: Use after free in Network. Reported by Tal Keren, Sam
Agranat, Eran Rom, Edouard Bochin, Adam Hatsir of Palo Alto Networks.
* d/patches:
- fixes/bindgen-unsafe-op.patch: drop now that sid's bindgen is fixed. Checksums-Sha1:
8a6d7558fdaec7cd76cf0c7c4f71df93449fa13b 3773 chromium_133.0.6943.126-1~deb12u1.dsc
2b5ecb3b43b3b1c745212ef8d685166b8112e9c3 882609812 chromium_133.0.6943.126.orig.tar.xz
eb0938eb2db572eb384b3fe197421231a9e9285c 8415144 chromium_133.0.6943.126-1~deb12u1.debian.tar.xz
8ce57a09713181c168707b150940358c02a49fc8 26763 chromium_133.0.6943.126-1~deb12u1_source.buildinfo
Checksums-Sha256:
5b891b58dee6afec5350de37603c500b85e8c2073a029d16eb797f4bc3f58031 3773 chromium_133.0.6943.126-1~deb12u1.dsc
08854ade31d6c28c58832aee8783cbfb119839939b6324955996efc57c3794ba 882609812 chromium_133.0.6943.126.orig.tar.xz
9336e6cb054afdd5f923c7cbbf96ab263d2621757ad02ac4b3dc10a991b8fb23 8415144 chromium_133.0.6943.126-1~deb12u1.debian.tar.xz
85b55183ae056c565b52937b421884e215080d106fc62a15aa46c0138a09b02c 26763 chromium_133.0.6943.126-1~deb12u1_source.buildinfo
Files:
5fed735cebb1f2e29ee3c6cd7e1c8d6c 3773 web optional chromium_133.0.6943.126-1~deb12u1.dsc
d22c6edfb49e30ef278099d56ec576d1 882609812 web optional chromium_133.0.6943.126.orig.tar.xz
b44e4899f52ac6628255935a5f558e36 8415144 web optional chromium_133.0.6943.126-1~deb12u1.debian.tar.xz
cd1177e7e44290c535fb7ed4c88af98e 26763 web optional chromium_133.0.6943.126-1~deb12u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----
iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAme3UBEUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudjf6cw//Q5RWIPqsxqg+7l3zSXMYQ1UU0zxB nbsuwxTdoAxpqmXb4pcODLc0/iFvTxTuLeSYRQ58WeIqMNlTeqC1C7Uo8qqVjjgh XINDIyFOmW9liPZtTqHfWq8D8ByAhAm3c4j+uUV/nlFHom2D8TfR7HKb43pO32F7 XN92OZX6AwZ1RucDbqc68LhkxBCK6WiP3lz81O+g9e+mvKSkH78XzKKwzKb9hs6L kQjrsRYqClyhXeIXHbUXMFNKiWxONp//vOQbkAZ1hAQftd4JiXH9xEw4O8Xl/ILD Sxt1DMrwX4vkihMf3Izl3gxg2f9FuBko1gixN0j1pD84LsjBjL/bH4j4hG1GNePE jivI/hJ23xZP88yevxVCJiZ8VMbkt6TB0KtEoxauj40VG+DWN7BwP3lkc83/4BNM Dv6aG/vOdJ8IBLIa3Yu1YVta0pucntyk9jvK/50VL4EX+8ATw1ZL8d4050rft2Da 6u+fN8tN9+CntEx+L1ZFjgH9tjvd1PfY9gj4i5qu+4jPHIFN26bIRliThoy1UNth ycxricQut4vYv9HGo63OBAyKSuSbW3ObNHjXegnPdu2EgTU5OnYzPbpVSMjBqybp HeEVhfQUGrK1oOhudl4X6H+4xlX/DUXb3x/GeF/sabgBjC007npUjICOC5MQH4Sp YlMkLr2YRHY0CeE=
=xxyV
-----END PGP SIGNATURE-----
--==============(71222777028343742=Content-Type: application/pgp-signature
-----BEGIN PGP SIGNATURE-----
iHUEABYIAB0WIQTziqJOuF8J+ZI8pJSb9qggYcy5IQUCZ72cKgAKCRCb9qggYcy5 IeC0AQDjz8geoMH6aOoxiNASr5WGzJbM6KAVpE+uXyhNsAadKwEA83j9ymvqUs6e vh1sDqLA5esSXSqcXl5s7RzVByVUhQg└do
-----END PGP SIGNATURE-----
--- SoupGate-Win32 v1.05
* Origin: fsxNet Usenet Gateway (21:1/5)