-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 28 Mar 2024 11:57:05 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: arm64 Version: 123.0.6312.86-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-conova-02) Changed-By: Timothy Pearson Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Closes: 1067886 Changes: chromium (123.0.6312.86-1~deb12u1) bookworm-security; urgency=high . * New upstream stable release. - CVE-2024-2883: Use after free in ANGLE. Reported by Cassidy Kim(@cassidy6564). - CVE-2024-2885: Use after free in Dawn. Reported by wgslfuzz. - CVE-2024-2886: Use after free in WebCodecs. Reported by Seunghyun Lee (@0x10n) of KAIST Hacking Lab, via Pwn2Own 2024. - CVE-2024-2887: Type Confusion in WebAssembly. Reported by Manfred Paul, via Pwn2Own 2024. * d/patches/ppc64le: - fixes/fix-clang-selection.patch: select clang on ppc64 platforms - ppc64le/third_party/0001-Add-PPC64-support-for-boringssl.patch: fix ARM builds. . [ Andres Salomon ] * d/patches: - fixes/bad-font-gc1.patch, fixes/bad-font-gc2.patch: revert a pair of upstream commits that result in blink's garbage collector frequently deadlocking and crashing (closes: #1067886). Checksums-Sha1: ea94fa5fe7231d7f7f2876ec4be5c3cfbb8226b9 1278584 chromium-common-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb c37e5b5d4c4b2ea0b6d7059c48c524270b6d10ea 4836724 chromium-common_123.0.6312.86-1~deb12u1_arm64.deb d3da2b8252cc633f40978a1bfa25a1b2777fe1e4 36206576 chromium-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 1513932ab1a5e742926ecb0d5c6e83b5c0cb92e8 5484476 chromium-driver_123.0.6312.86-1~deb12u1_arm64.deb ffbd6831d0080b85c80a84550a92170adaa73978 14476 chromium-sandbox-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 71489f2b210450f56934514e8b83f1255b5dfa3c 87752 chromium-sandbox_123.0.6312.86-1~deb12u1_arm64.deb e60f2588b65aa57c5ee1a3ee4b7305239368e80c 30790232 chromium-shell-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 992adb6096881437d472bdb6d767c6bf5083c17f 45999088 chromium-shell_123.0.6312.86-1~deb12u1_arm64.deb 53eafd08657c5636438d891f7e8dd52ce11ee232 24523 chromium_123.0.6312.86-1~deb12u1_arm64-buildd.buildinfo 29bd7c91fce0e8a4f1baa5a2e0532a9d01f3e2a2 65869032 chromium_123.0.6312.86-1~deb12u1_arm64.deb Checksums-Sha256: 5079714b74999776a272c7203f292497a120a6b284cfa07a2a39dd157270ec93 1278584 chromium-common-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 0c279a316b6730999a94aa3e36326826c49a6d6605d86fed332090b1414135e2 4836724 chromium-common_123.0.6312.86-1~deb12u1_arm64.deb 0d3364da28c36e0ec46e9e4d33ad750f56d3c71ebf6da805d877e2ab9dee8f25 36206576 chromium-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 983c087e15c8ebb90a656e408f58fe94e1d80243a89cc95ca049a9657793a7b2 5484476 chromium-driver_123.0.6312.86-1~deb12u1_arm64.deb ba2db036ebd764eb2ed3d1d957b9b0f4aa093770fb1815d4cc8e5bd396339014 14476 chromium-sandbox-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 3ac3575c69dda4704dbac81e58fcdea1231a602f4bccf0f9279a4162366b11dd 87752 chromium-sandbox_123.0.6312.86-1~deb12u1_arm64.deb 85f5483b30bdbb9e669585ae2f49e7cd99a74d0f48a607ba0065b5b3277abeea 30790232 chromium-shell-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 562259eaf5f29a9734711d8b5645bc602b10f23475ba381dd2f8ab0308046584 45999088 chromium-shell_123.0.6312.86-1~deb12u1_arm64.deb 2184283c251f5046e17516c2574881784544e5d9d8ecd29bb8b62fad93880574 24523 chromium_123.0.6312.86-1~deb12u1_arm64-buildd.buildinfo b4168a73466d93dfe45893735af0d9599de50f2c23e1d3751a1ca446a48f4681 65869032 chromium_123.0.6312.86-1~deb12u1_arm64.deb Files: 0a44153e39c96ead63a9125918305dad 1278584 debug optional chromium-common-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 3930d3f10179e5815616f04c966acbca 4836724 web optional chromium-common_123.0.6312.86-1~deb12u1_arm64.deb 0055028e64db3bfa6aeda2765080569d 36206576 debug optional chromium-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb fc9560926089742957644ed76a653e3f 5484476 web optional chromium-driver_123.0.6312.86-1~deb12u1_arm64.deb eadb34e36a8bc2ef64210ade37e0f1d7 14476 debug optional chromium-sandbox-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb 15998e50d2e64252526b5b5ab2163c88 87752 web optional chromium-sandbox_123.0.6312.86-1~deb12u1_arm64.deb bae972bb02172b1b03f831370036d237 30790232 debug optional chromium-shell-dbgsym_123.0.6312.86-1~deb12u1_arm64.deb b0f542e014bd29b29d4777a71a467053 45999088 web optional chromium-shell_123.0.6312.86-1~deb12u1_arm64.deb 194271c0c91a8aeed65960896a563d9c 24523 web optional chromium_123.0.6312.86-1~deb12u1_arm64-buildd.buildinfo 0f647c45bcd82ba0db665c3995c07a09 65869032 web optional chromium_123.0.6312.86-1~deb12u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEBv+o19JDIRm4yIQ5CeROIpkCGwcFAmYGF/AACgkQCeROIpkC GwdGIA/6AojS5Q3JNLtqM9VduGOuG8wiyqpYsZ0rvjLKcCFUyEPRmaP/XchWjRrC +PBiccP+lWUV2xo8Vf3E0POcOBfoGO9ONroom6L/AGBxz7hushYxozvXzmAExWGc h6BeSVLWMLU2pRpxESSpkir7cRVdJWZVsV6c6Z4jl0MvomJsb6Ek4E3gw0BV8XGl 3a8KwiLxRzrNiJp9dqruoYV3uu6nfYKvhiuXMK2y1swCTP+1fMqHXj55wDAbjewu tSFNXif5P3JLHHPoyZMIqMTKmYGSqpM6L6xIzfvHup2vsoRc7SBiB4JUR0t8h48f 2EgZ/F4hlP7Y6gnDICfhDtr4iaSHMu/cuUgmsRJTJL94DDQVyDumiQnYIUr1KUUY K7/ESUAYMxA5E0lt3FTpHneQddegm9HAEZwV0FgdMRJ4WYyJPeKlVbs6eNGtWimt c/N7L5CTqaPykagb5d+E6i9bChmRr74AKB8kReblKjgSHKJ0IBeHw1noI1oKG2DY krEUpW/kG06mCXkgyfvjU0q1zwQwE+vElYMXZp7PvVBjQ8gq5EaOHpcXlNvAzUq0 Iee/ZAP8KiYNztw2SpYaLlPV2S3jMpLcQ6f597hVuxz5X8+T89MZpf0Udu/ccLu7 U6c5GqV96xQaidYUNaXKLWDiIXoeimgTMxc8hES+UwInABcM4k8= =ejib -----END PGP SIGNATURE-----