-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Thu, 20 Feb 2025 00:16:49 -0500 Source: chromium Architecture: source Version: 133.0.6943.126-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Andres Salomon <dilinger@debian.org> Changes: chromium (133.0.6943.126-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2025-0999: Heap buffer overflow in V8. Reported by Seunghyun Lee (@0x10n). - CVE-2025-1426: Heap buffer overflow in GPU. Reported by un3xploitable && GF. - CVE-2025-1006: Use after free in Network. Reported by Tal Keren, Sam Agranat, Eran Rom, Edouard Bochin, Adam Hatsir of Palo Alto Networks. * d/patches: - fixes/bindgen-unsafe-op.patch: drop now that sid's bindgen is fixed. Checksums-Sha1: 8a6d7558fdaec7cd76cf0c7c4f71df93449fa13b 3773 chromium_133.0.6943.126-1~deb12u1.dsc 2b5ecb3b43b3b1c745212ef8d685166b8112e9c3 882609812 chromium_133.0.6943.126.orig.tar.xz eb0938eb2db572eb384b3fe197421231a9e9285c 8415144 chromium_133.0.6943.126-1~deb12u1.debian.tar.xz 8ce57a09713181c168707b150940358c02a49fc8 26763 chromium_133.0.6943.126-1~deb12u1_source.buildinfo Checksums-Sha256: 5b891b58dee6afec5350de37603c500b85e8c2073a029d16eb797f4bc3f58031 3773 chromium_133.0.6943.126-1~deb12u1.dsc 08854ade31d6c28c58832aee8783cbfb119839939b6324955996efc57c3794ba 882609812 chromium_133.0.6943.126.orig.tar.xz 9336e6cb054afdd5f923c7cbbf96ab263d2621757ad02ac4b3dc10a991b8fb23 8415144 chromium_133.0.6943.126-1~deb12u1.debian.tar.xz 85b55183ae056c565b52937b421884e215080d106fc62a15aa46c0138a09b02c 26763 chromium_133.0.6943.126-1~deb12u1_source.buildinfo Files: 5fed735cebb1f2e29ee3c6cd7e1c8d6c 3773 web optional chromium_133.0.6943.126-1~deb12u1.dsc d22c6edfb49e30ef278099d56ec576d1 882609812 web optional chromium_133.0.6943.126.orig.tar.xz b44e4899f52ac6628255935a5f558e36 8415144 web optional chromium_133.0.6943.126-1~deb12u1.debian.tar.xz cd1177e7e44290c535fb7ed4c88af98e 26763 web optional chromium_133.0.6943.126-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAme3UBEUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudjf6cw//Q5RWIPqsxqg+7l3zSXMYQ1UU0zxB nbsuwxTdoAxpqmXb4pcODLc0/iFvTxTuLeSYRQ58WeIqMNlTeqC1C7Uo8qqVjjgh XINDIyFOmW9liPZtTqHfWq8D8ByAhAm3c4j+uUV/nlFHom2D8TfR7HKb43pO32F7 XN92OZX6AwZ1RucDbqc68LhkxBCK6WiP3lz81O+g9e+mvKSkH78XzKKwzKb9hs6L kQjrsRYqClyhXeIXHbUXMFNKiWxONp//vOQbkAZ1hAQftd4JiXH9xEw4O8Xl/ILD Sxt1DMrwX4vkihMf3Izl3gxg2f9FuBko1gixN0j1pD84LsjBjL/bH4j4hG1GNePE jivI/hJ23xZP88yevxVCJiZ8VMbkt6TB0KtEoxauj40VG+DWN7BwP3lkc83/4BNM Dv6aG/vOdJ8IBLIa3Yu1YVta0pucntyk9jvK/50VL4EX+8ATw1ZL8d4050rft2Da 6u+fN8tN9+CntEx+L1ZFjgH9tjvd1PfY9gj4i5qu+4jPHIFN26bIRliThoy1UNth ycxricQut4vYv9HGo63OBAyKSuSbW3ObNHjXegnPdu2EgTU5OnYzPbpVSMjBqybp HeEVhfQUGrK1oOhudl4X6H+4xlX/DUXb3x/GeF/sabgBjC007npUjICOC5MQH4Sp YlMkLr2YRHY0CeE= =xxyV -----END PGP SIGNATURE-----