-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 12 Dec 2023 19:52:08 -0500 Source: chromium Architecture: source Version: 120.0.6099.109-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Andres Salomon <dilinger@debian.org> Changes: chromium (120.0.6099.109-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2023-6702: Type Confusion in V8. Reported by Zhiyi Zhang and Zhunki from Codesafe Team of Legendsec at Qi'anxin Group. - CVE-2023-6703: Use after free in Blink. Reported by Cassidy Kim(@cassidy6564). - CVE-2023-6704: Use after free in libavif. Reported by Fudan University. - CVE-2023-6705: Use after free in WebRTC. Reported by Cassidy Kim(@cassidy6564). - CVE-2023-6706: Use after free in FedCM. Reported by anonymous. - CVE-2023-6707: Use after free in CSS. Reported by @ginggilBesel. Checksums-Sha1: 46e2580f9c9d7138a0a7d082a24f1dfd2fcd7410 3738 chromium_120.0.6099.109-1~deb12u1.dsc c66abd506c8e2ac10fa13bdada37e831fc256ad8 791827636 chromium_120.0.6099.109.orig.tar.xz 3dbc71922a728d7f9c86abcd4f914b63998b480e 368808 chromium_120.0.6099.109-1~deb12u1.debian.tar.xz 858725532e65c685d8ffd4f2a9f0d7d4eeea0caf 21472 chromium_120.0.6099.109-1~deb12u1_source.buildinfo Checksums-Sha256: 48c780d90b67e8ff1bc2dd6806673606c936d1e8d6ae526b25869088d513bb88 3738 chromium_120.0.6099.109-1~deb12u1.dsc 5e778069e659fb483869e2e65cdeca0c26d26393516d811bee9f400184ae94c4 791827636 chromium_120.0.6099.109.orig.tar.xz d0157d381eb50d0d48a773fb91fad4e2510caf9a5c9411c353dd05fed8746d93 368808 chromium_120.0.6099.109-1~deb12u1.debian.tar.xz b2f1040ebbac1c2c031f2f1b8fdced1e3f752811f5a011d941398a82edbfcb61 21472 chromium_120.0.6099.109-1~deb12u1_source.buildinfo Files: d0a9311a88c51ef75f8d217c5c27ee4a 3738 web optional chromium_120.0.6099.109-1~deb12u1.dsc 8bde685ace254c8e8dc48d5018a03851 791827636 web optional chromium_120.0.6099.109.orig.tar.xz 4f4749fe1cbb7322f4783e6f809891c0 368808 web optional chromium_120.0.6099.109-1~deb12u1.debian.tar.xz 4d4355b40d41f9ccb13d6ef22fe89c0d 21472 web optional chromium_120.0.6099.109-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmV5b2EUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjcxUA/9EtILa2ShQSPf/ialdeVEzQDUbkUS nOEbguUMkT7/kJmkgoxJCvlodBqQzMPdrrOaOv3jsuRE7nBE3+VqhROW90Q4fuGs 3rKoD9xvBvwBpbXFMuWTC3dA/pxI+NVtllcyHdPfIh8CyP3YpgZzThw0hv2vmhHk /4uH6b1g7TvfI0Sf0LXPwlR8ZIXi6i5dT9I23ZnysEQJ7AysrM/f9Uk/3StRuD9/ fyB5v4Y1WR7hrXGtgNxc7VkEB3VfoZ9Oy9IijmCF2GPIMbx6zbTw2+klOZHDxp7L 0qDqnkeIt5xJ7q1l1mn+gzsbbWJFqmZ+d8Uj5IE4xFGBjV3IQh6NMu3R2g3rsE7O fXZAbEJ+dpYT5du8jTzyqlZyvl+egw7EiCoJ/EtcxRT6kNUBuy0SCx0qXUuJgZfU bZGwixQ5PCY+ZgpFrzeBtfJQrOA0+7WPFmZ6bpM/cuey/EOL+4xRz9SBQwlI9r5l eVI9rI+tQFdsFRnoK+DSJjSSVS0H69j0M4Es2dDksM5iFW6SvodQdqZXGgPh0oaR OogATIAe/la1ldMVPQw7zAjMLMxPUPyiOADv7HNm7NyAd6jBd1nzXu/nnP30SIOk EdXJlkdPAndsYBkE88YKS9u9Q4jQps3aD1AKR3tWKFKOsMmCFVUT8Nc9FgknZLJC CdiJL6x8NXsiIvI= =rw+W -----END PGP SIGNATURE-----