-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 29 Oct 2024 20:36:38 -0400 Source: chromium Architecture: source Version: 130.0.6723.91-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Andres Salomon <dilinger@debian.org> Changes: chromium (130.0.6723.91-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2024-10487: Out of bounds write in Dawn. Reported by Apple Security Engineering and Architecture (SEAR). - CVE-2024-10488: Use after free in WebRTC. Reported by Cassidy Kim(@cassidy6564). Checksums-Sha1: 73a07edd775b4cfdf689a579940ea421c1355158 3812 chromium_130.0.6723.91-1~deb12u1.dsc 0bce108fd3f9e9f1c3f28e65c19178ac0405708d 814883852 chromium_130.0.6723.91.orig.tar.xz d9485feacec61a20ed5750970566715add9a9d14 8498732 chromium_130.0.6723.91-1~deb12u1.debian.tar.xz 723c282f23d988d6ec35ee827003c056aa60f1f3 22071 chromium_130.0.6723.91-1~deb12u1_source.buildinfo Checksums-Sha256: 2c6a39d318cf1f88fef6635706fe4902f38de564b3b4e9d091b738944e2ecae7 3812 chromium_130.0.6723.91-1~deb12u1.dsc 0f828b6a6469289c5f3efe2479389357e83e7730b9585c00ff8585e21033dcb7 814883852 chromium_130.0.6723.91.orig.tar.xz 39b2aafac43ac84df72256c24c26578e30e956facaa7571642307ad30c7eb3fd 8498732 chromium_130.0.6723.91-1~deb12u1.debian.tar.xz 2d289c48d14bdb80377d959ac83b9ffff3ea2207c42db8810a66d8553bf1c48d 22071 chromium_130.0.6723.91-1~deb12u1_source.buildinfo Files: 05c0906f65436dea30ad39c4948cd456 3812 web optional chromium_130.0.6723.91-1~deb12u1.dsc ca0859ca2e98029474676d597660b748 814883852 web optional chromium_130.0.6723.91.orig.tar.xz a8f5baa93d0241b5d1b8b6a027dd25cf 8498732 web optional chromium_130.0.6723.91-1~deb12u1.debian.tar.xz 4b73f4f71e31c8154fdc9073b07c022f 22071 web optional chromium_130.0.6723.91-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmcm3lIUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjfgIA/+JzzOo6jd/mhbh4hX2lGlQj/enqFW FdqLblMY/QZBJvHrTFZ/+REceMMgOeHXt2GEYXsfgtfuVDJRZs+aKkepv2JIBQwT hoLJPzXF/xKUviSO3Zg6OZjPFP93Sa8yHLTZom/XSivjED4ugHY47/qShTW48tfY QfNndh5Jfbb7Ebv1aKQDMyFw8FJaNj6e0eyQCZtQ0A0FCHsO5SKokoDtrf7+pNku tAVtAB5oT7yw35fdK3Qc8c6lQawW2kMer2H/jyYLSP8/sm2uHeBEOMoGeq1eGaI4 Mn0RUeH/JDtjz+pUvRQ0nde+Cvy2d9iZTBtrXDO08Gda3RwaI0kS9PidrTKImfeS D1m3WPdael1a2SDHqrU43CS9d/HmQ3jzbrQU4fSiWazDJHoXK8+lCJuRPWzR5ZZL aYj1Yt6rGrQ9vscGeS49A0HVyDd2Noz65WRU23iNo9nqtHhR4Tx4ATJkmsrji7Xz 7SuP6HpgultRMWwUIriF1WqipILXyuYDP9ohm6w8aHV7dvv2YaZBOxsdejJ7/uxf GRYm1V3pDhTNbN2m7Bk4h3HpQca33YiVxdbf+uBENVYgVBZMsrfyVi43RUtRppoV I3AgkvaxIcfPVOVDfYqd/eapWtDvVaH1/SNr4oFszDKuLfaOnz6J96CIr45ESr8b KdLhxXPTcLUFfFM= =w1ok -----END PGP SIGNATURE-----