-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 13 Dec 2022 19:10:00 -0600 Source: chromium Architecture: source Version: 108.0.5359.124-1~deb11u1 Distribution: bullseye-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Timothy Pearson <tpearson@raptorengineering.com> Changes: chromium (108.0.5359.124-1~deb11u1) bullseye-security; urgency=high . * New upstream security release. - CVE-2022-4436: Use after free in Blink Media. Reported by Anonymous on 2022-11-15 - CVE-2022-4437: Use after free in Mojo IPC. Reported by koocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute on 2022-11-30 - CVE-2022-4438: Use after free in Blink Frames. Reported by Anonymous on 2022-11-07 - CVE-2022-4439: Use after free in Aura. Reported by Anonymous on 2022-11-22 - CVE-2022-4440: Use after free in Profiles. Reported by Anonymous on 2022-11-09 . [ Andres Salomon ] * Drop fixes/disable-cxx20.patch; turned out to be a clang-14 bug (https://bugs.debian.org/1025394) causing the issue that is now fixed. Checksums-Sha1: 8087191a9af49dad5b4e65eab656fa70ecb3ec7a 3808 chromium_108.0.5359.124-1~deb11u1.dsc 5f3a1533f0238cbab573c8bfb66e294588d30a4d 625375700 chromium_108.0.5359.124.orig.tar.xz b530616ac94e86600560bc22831d3416dd56d7bf 288976 chromium_108.0.5359.124-1~deb11u1.debian.tar.xz 68d393318c155e90bf020f1c90c16fbf863c3ad4 21273 chromium_108.0.5359.124-1~deb11u1_source.buildinfo Checksums-Sha256: 26da7cd76d424a5ba207642d9b2bc39afce67b920da707d9a0e6cee737587f07 3808 chromium_108.0.5359.124-1~deb11u1.dsc c636a6e6c144bd7bfbf6f99db176474c326ecdcfaff0da1dca0348539c358a2f 625375700 chromium_108.0.5359.124.orig.tar.xz bd4bdb756a018ef4981e5e2864729a1051ec77ed84d63b147e8197b746abb906 288976 chromium_108.0.5359.124-1~deb11u1.debian.tar.xz e462bd2ec30a44fb6eac3853523affb5961b8ee238dda80db71b7a41250de041 21273 chromium_108.0.5359.124-1~deb11u1_source.buildinfo Files: 75f3a55db5591f439fe61b51fc1c0864 3808 web optional chromium_108.0.5359.124-1~deb11u1.dsc bde686adb06f4a8ad70ba0670be70412 625375700 web optional chromium_108.0.5359.124.orig.tar.xz 5535499ed6fcc9f57da2db9b7098cdbd 288976 web optional chromium_108.0.5359.124-1~deb11u1.debian.tar.xz 886e89fc94214b1433a3d34e74661405 21273 web optional chromium_108.0.5359.124-1~deb11u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmOaC/wUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudje90Q//XeTHnXLcstFg0V9kWtfYOa9CXizD W5ct048F4FpfnlGmvBWuMvMpk54mQOcrM24XPBpH9/7zRrFxiLR6CzWKYAYVAGnz Nk3c7db3BFsAdtHXzSpG9WkNvi/2Ymh+694ZkoLe8Xyl62z2Cwa2AOdfIbcAbq2q FQxlKVXvUyOctJmlYK57PYhO0gy/H5FJDQX2sszkDgpLgydSuVHttUvbQl56wsr+ jNN5P3ioEzchj86LmlGb1HmIJyUQxKJScmz9XMBSza+w0F7rlmRjsx5YApulr6rZ IxXl63W4V+Xq1pKtQ5l9e9yzAn9bAwAKZ8pKO3ZLl6SajxvNWh7Ds/7YADrQ3f70 NFVlwWQtzyakUrnsS6lLaWAJwnovm7lLhmxBXfPyAt2zgik30lECDkkOCkubQ/4o ouXQWhASBuWd6C9R1D6kQJjTmiu6vEeqKb8GpAYrKoi3vtBWW65NFFNM+bKt/hRK fD15nQZclvkN4f6EkmVnPq2iIvkSKTTLcZdyAuzTcq6zias4CCmFBegueKtNkIyu t+MBGbhN7agJSe26HLZiy14Fx66tXwlAKbiA+ETJoLiphBMraRTFi0yFi+MR32w1 rMnXnc65JCsiEKehIeiyc7EJi/Gui0hrL+7IAyOuF1xLaaI9kQREar4KMMyBzJQH HAZ2IMaTW+EhQ84= =mif0 -----END PGP SIGNATURE-----