-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 28 Nov 2023 23:33:06 -0500 Source: chromium Architecture: source Version: 119.0.6045.199-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Andres Salomon <dilinger@debian.org> Changes: chromium (119.0.6045.199-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2023-6348: Type Confusion in Spellcheck. Reported by Mark Brand of Google Project Zero. - CVE-2023-6347: Use after free in Mojo. Reported by Leecraso and Guang Gong of 360 Vulnerability Research Institute. - CVE-2023-6346: Use after free in WebAudio. Reported by Huang Xilin of Ant Group Light-Year Security Lab. - CVE-2023-6350: Out of bounds memory access in libavif. Reported by Fudan University. - CVE-2023-6351: Use after free in libavif. Reported by Fudan University. - CVE-2023-6345: Integer overflow in Skia. Reported by Benoît Sevens and Clément Lecigne of Google's Threat Analysis Group. Checksums-Sha1: 63d91037d539d00c8e1e913c54944618ffc7444f 3721 chromium_119.0.6045.199-1~deb12u1.dsc ec3824b52f6403085f47cb0834de783476cad891 784711256 chromium_119.0.6045.199.orig.tar.xz d72c60e16f4712b20dbf3296e4ef5358cf3c51d7 358020 chromium_119.0.6045.199-1~deb12u1.debian.tar.xz 1a3a93cfb81f39d2e65672691a86b041d6fbf2f7 21349 chromium_119.0.6045.199-1~deb12u1_source.buildinfo Checksums-Sha256: 73549cd7a8f87fe5cd8aae7c1f17f50a2f6ee546bfcfab7ae92503b09dd3c24a 3721 chromium_119.0.6045.199-1~deb12u1.dsc 3317a18fa612e06792cbd6d3522090ff8977be9b9dc662d43ffc4c5a55ac23cc 784711256 chromium_119.0.6045.199.orig.tar.xz f33aba4f7670b8a504ad0ea1289730667c6e64a7ce274b6d4286f2038164951c 358020 chromium_119.0.6045.199-1~deb12u1.debian.tar.xz 63cf9a5ca2e1beb9f6db3f829f30ae2d231942c3229bc7fcdcd1f66f06fccb10 21349 chromium_119.0.6045.199-1~deb12u1_source.buildinfo Files: da80630782df1f17887eb69fb62dd491 3721 web optional chromium_119.0.6045.199-1~deb12u1.dsc 7b02987df07bad6545dc5dfb5fbfdb11 784711256 web optional chromium_119.0.6045.199.orig.tar.xz f5a67a132b3d618d49222e23433deedd 358020 web optional chromium_119.0.6045.199-1~deb12u1.debian.tar.xz d809094d15008dca301401c2a67e0694 21349 web optional chromium_119.0.6045.199-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmVnkOMUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudjc05Q/+IRuVyPjYqjxfCdk8Lptsfq/I/Qaw /Oczu8FLXqOn9SWbviPxiXcR5Ve8JmdWbl3fhU4EuLxMlo1R/P05Bp+DAOudU0HK 0ZO8TtAhlQX95Qe+3j1eWSNVZKpjU98ieyLVSGkM44bV118v7Dug2ooe43kI246u m9edfQJL+Sn3wou7VRZCbdyeMaWVOHoBuxIrmL3LiSaSy3eO0KRs+DjmgqhMV9pG q/WZqKKHkRt+XyGunkaQ4c1qV9JJCtSLQU5IPdi9qhIcE2KbFMzXtW06cexXjz4G C/zVrxyD4S5+qJsPYnOkQcIrWAZXJnBfMEzlIH+PtVyw6xwKiSFf1H0WMLMwPa+x 7YKvc8pZCvr/s635W23LUKYSwpywZHXYqewvwYyxpcNo095l3vZN4TShoa1+r0ln HoKIR8Il1v4yuWYbErXSUCiTfsIoiSlo0foO7ecsXQpYVbEmmAeWPFCnmR+WeTY7 kAt7hLnJLMW49AWwFcsRMR8ye8CFB9lfbdfmuFA2/emgARUbZayB3gtwNN3/+k1C wGZFpQj4hUGNBtrOsZgFOzFAhDHc+ek7EjHfzNdxVbPoKYok8tNCegQKJd1Sskl0 PvVV7JM9UzHfAGr/mK2AaNIDY37+ohElIcn2fEgcQ9evlUqvX7UffUi6CdncmPnv 8PfVm7UdOenm2QM= =/0xo -----END PGP SIGNATURE-----