-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 13 Dec 2022 19:10:00 -0600 Source: chromium Architecture: source Version: 108.0.5359.124-1 Distribution: unstable Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Timothy Pearson <tpearson@raptorengineering.com> Changes: chromium (108.0.5359.124-1) unstable; urgency=high . * New upstream security release. - CVE-2022-4436: Use after free in Blink Media. Reported by Anonymous on 2022-11-15 - CVE-2022-4437: Use after free in Mojo IPC. Reported by koocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute on 2022-11-30 - CVE-2022-4438: Use after free in Blink Frames. Reported by Anonymous on 2022-11-07 - CVE-2022-4439: Use after free in Aura. Reported by Anonymous on 2022-11-22 - CVE-2022-4440: Use after free in Profiles. Reported by Anonymous on 2022-11-09 . [ Andres Salomon ] * Drop fixes/disable-cxx20.patch; turned out to be a clang-14 bug (https://bugs.debian.org/1025394) causing the issue that is now fixed. Checksums-Sha1: 3cd008d3071b92c8b019bbbc5196205488f63090 3691 chromium_108.0.5359.124-1.dsc 5f3a1533f0238cbab573c8bfb66e294588d30a4d 625375700 chromium_108.0.5359.124.orig.tar.xz b25eac307102fa616606a5901e3f93894741129d 288996 chromium_108.0.5359.124-1.debian.tar.xz 1dcd4dd1a5b3d83bcd4dee77fe38e85a1203395e 20551 chromium_108.0.5359.124-1_source.buildinfo Checksums-Sha256: 79eb0d5e65f30e9c27f7c0766e14a590dba3b70dbef845ded82a3be803c1b66a 3691 chromium_108.0.5359.124-1.dsc c636a6e6c144bd7bfbf6f99db176474c326ecdcfaff0da1dca0348539c358a2f 625375700 chromium_108.0.5359.124.orig.tar.xz df6faa4c10bd35f83165090e2fc9e9825f8e176e69a8e7dd1781ecc023fcae90 288996 chromium_108.0.5359.124-1.debian.tar.xz 9655c6d23775d1e71640055f258b6904a7499d44500fd4d713dd68651f77d703 20551 chromium_108.0.5359.124-1_source.buildinfo Files: bd8f3964c802d075e8ca3033dfdc9a70 3691 web optional chromium_108.0.5359.124-1.dsc bde686adb06f4a8ad70ba0670be70412 625375700 web optional chromium_108.0.5359.124.orig.tar.xz fa0c44400deeaeee156ce23f9116219c 288996 web optional chromium_108.0.5359.124-1.debian.tar.xz 782fdeae1184717f0dd9b60973285fe0 20551 web optional chromium_108.0.5359.124-1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmOZkaAUHGRpbGluZ2Vy QHF1ZXVlZC5uZXQACgkQZF0CR8NudjflCg/+MvJuElBBYbkQ8YGbyJ+R3G+Rcs0p vSBUDhkn5ZY5zeinjjfKvup/7UIs96R7a4rf8hSFTCggKwdOtwX4tQSXOOGwPt3a n0LVToynZptJjKy9eNugVEUH6IXgFZrYcjjcO10HzLTKtnNTma7Pq+wrSX12zYmS 54WGdon6Mt0PGtd5myuhRAS5fh8p2JhEz7veuT5NV6KVPohHdMXe9h2YKyVBo1xF 1IbpUMU8OSDpPqWDPQeMNKjpqQXRewEQyxdsYnwO5TB1W8WYPzvWJFvQkjwzSy8X ivA6+px5OzTdKKzJlIeplVZlcz4IrO6uB1K4nhLXcaURr3sGTyDO3dXubFpIupC+ jEJAoCI7LUkga1wp6IlJuK57Kq4v/Bk+8d/olwapR0vPHNWGh+mwf+jB5LR/6cdM B160Zj1JoxwcmnBUfl3OD9GbITvCU0+STrEWLNwKjsQqCr3Ude/HT+ihPnV3zTlY lb6J4LjGFcx1SeOs8eS36/nAkOExGdGpP8/bB/UWd39jfmak/OoJGqeUNgESVvHe vTrSofR0BPW1+mlfiCvRl3VQmKYT6nXO7CmrAs1LPUXlxgbCuD1uCmUVyeQ6PcaF G0VweEflSSxgCazMLcEr/uW0TgFkhzdi+1mTMZik4Db/9SwxyYPnRUEA4X5873xH oIpNht9iuXcGCno= =C2EL -----END PGP SIGNATURE-----