-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Tue, 19 Mar 2019 02:19:17 +0000 Source: chromium Architecture: source Version: 73.0.3683.75-1 Distribution: unstable Urgency: medium Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Michael Gilbert <mgilbert@debian.org> Changes: chromium (73.0.3683.75-1) unstable; urgency=medium . * New upstream stable release. - CVE-2019-5787: Use after free in Canvas. Reported by Zhe Jin - CVE-2019-5788: Use after free in FileAPI. Reported by Mark Brand - CVE-2019-5789: Use after free in WebMIDI. Reported by Mark Brand - CVE-2019-5790: Heap buffer overflow in V8. Reported by Dimitri Fourny - CVE-2019-5791: Type confusion in V8. Reported by Choongwoo Han - CVE-2019-5792: Integer overflow in PDFium. Reported by pdknsk - CVE-2019-5793: Excessive permissions for private API in Extensions. Reported by Jun Kokatsu - CVE-2019-5794: Security UI spoofing. Reported by Juno Im of Theori - CVE-2019-5795: Integer overflow in PDFium. Reported by pdknsk - CVE-2019-5796: Race condition in Extensions. Reported by Mark Brand - CVE-2019-5797: Race condition in DOMStorage. Reported by Mark Brand - CVE-2019-5798: Out of bounds read in Skia. Reported by Tran Tien Hung - CVE-2019-5799: CSP bypass with blob URL. Reported by sohalt - CVE-2019-5800: CSP bypass with blob URL. Reported by Jun Kokatsu - CVE-2019-5802: Security UI spoofing. Reported by Ronni Skansing - CVE-2019-5803: CSP bypass with Javascript URLs'. Reported by Andrew Comminos Checksums-Sha1: d9c2482bf322677c8cff80880497ce62f3d12f8d 4203 chromium_73.0.3683.75-1.dsc 776bfaa2e55fda479cfc7365ef49f9c54aa49dc8 224659364 chromium_73.0.3683.75.orig.tar.xz aa720ccde995e7d87aa6c8803ec8b333dae151a7 183352 chromium_73.0.3683.75-1.debian.tar.xz 6d7ea7ffa98202741e17164c4fcbbf57160cdccd 20931 chromium_73.0.3683.75-1_source.buildinfo Checksums-Sha256: 23c886c818cc0b0d426d38ba39957e9e9945e9fea585b5bebccacb04aa1cd9ae 4203 chromium_73.0.3683.75-1.dsc 7dfdc4d5c75db1caa74ae792f8e9a2e10c21c573725beaf5cd91e8edfd527b77 224659364 chromium_73.0.3683.75.orig.tar.xz 0d9c66e09a06a3ff7cec7f8cdd92e4fff49b2f522fab37917b9190b285b71a9d 183352 chromium_73.0.3683.75-1.debian.tar.xz 140a7d58f210f7d89890cd90570325c3111ee05133da91e453f6a094fad77cb9 20931 chromium_73.0.3683.75-1_source.buildinfo Files: 749dcf845e8b34db47a0aafadedcacb6 4203 web optional chromium_73.0.3683.75-1.dsc 939555e77aaeacc51ca3dbdf9d440348 224659364 web optional chromium_73.0.3683.75.orig.tar.xz daa20a3222f88fa1289c11cfb5aad802 183352 web optional chromium_73.0.3683.75-1.debian.tar.xz 6efea1c24786d8b8aacb308e7b67f801 20931 web optional chromium_73.0.3683.75-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQQzBAEBCgAdFiEEluhy7ASCBulP9FUWuNayzQLW9HMFAlyQhncACgkQuNayzQLW 9HNjGSAAjpqEKntFs7pJwPZ9u79V2cKzwlULsWcKYcLa1s/g/dwFo0gl3S6uyzS5 Ja9Ii0M/i4oyEj0JGW2k0znpVlNp+vp5uoro0V4gkyJgvNap/B0OHjufO3yk476t S7U2oZUBK26+LQR+WHyGy/9KlbpceRMUY19qj5aZXTNVPCZjMZMgTdPRcdjuXJtm EsMvQNaETRoIqa2tb37nPrWOhlXQL5RIorArwHt6CeXp8OWczA5D8jGG3erMPFn1 JqcWO8mq3cWEq26NBxIqCp7wHl40P7vubbwIEoAsjGRHw3rd0WIRl5quaKcjmM2M 4Epkz+Bxc9dfc+SwsMdZj+QDugT6z0pwCRYrjXMwHpjFf6wbBkBhA8U0NmL1l5t6 CmZNr7jf2IJ6BN0z66xNrJSRVd0OaWh4NBmOj7BasacywnX6HqucBwn+zoPQYioY nHW5cnR7rXv183zmr5M6va6WxNTCEIdHntbtSdryX3dzjre6S3Xvcc+TgfM+pfLW 3tAwKWDNB162Ijec53Rx2rModywh8IIakRfdlCjcQWQ/4okJbF6QIuY1Sxp+8Uyg oNNklvtNybsYZHz1GxabdoPdPJdQijK2mmgyYI0Y9w5l7x4JVk4AEAY9oTkRtkWx hLulnVc2jsk2neaKI6l6B5nnPGpD8snwF/xrHZQd1qigjUNK/WeTc+pCqzoEha/n 95Bx1TK41biD4ChNbdkghPQ9FoJzS302HBuGLhxuIKDqqH5ewVCEI33N7CVIacno 7iYA64SYR4eF4R1AG3h0YvirwIokCq+kO6vCd8j4ewyTaaCKfhpNHhyFJrsTdGKH +1gCdttvQDvis/+KJgT8iO9ajEgmY50ro/64A7aZDo220zN9VZttJFtzzCXT8iVB Li/9pQBlOoF3eJwjj/hSKCBKcFFgNUmxBbGebmqPIVBsGlBByhuzRfCg7HS4egV0 vg/WSzZrH95ZXJk8sS+xGdS3XB68gi2DLTyYm6QRhTlNmZF4GPBN1pz7Q+cBKQWR zj6SgcXPtlZsO2fn0zpdNhm9PG/X6XlrrIr5vacz8sVlFDwQQx6nex+3FFUlMSo3 RZ0xzwUtPkZcyrX2eKVG2cDFHtTBEA5ZuHNMOUhc7BPfV1D3sZzv31KfYtoDtNfO jLkp1095Xt7Xplg6nCvyKFe3m157h283NbayUrUCIibwgsUw5T25NqxeMfelMC/i J8w/NBOhj3y5DJ92dDo87B+0n3DMmSxQodlYVAaxCuisG17gZ8oeMICZ8alhDILY q9XRrh0hEFzmIXFTgl7ugDqlOdnQ7Dmy0vgBQZr0ZigUy1Dh/uj8th6UoKACJz+y q/rtI0W6mkCMRZoLwHPoe27bvFZwNQ== =iC92 -----END PGP SIGNATURE-----