-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 17 Sep 2025 22:25:31 -0400 Source: chromium Architecture: source Version: 140.0.7339.185-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team <chromium@packages.debian.org> Changed-By: Andres Salomon <dilinger@debian.org> Changes: chromium (140.0.7339.185-1~deb12u1) bookworm-security; urgency=high . * New upstream security release. - CVE-2025-10585: Type Confusion in V8. Reported by Google Threat Analysis Group. - CVE-2025-10500: Use after free in Dawn. Reported by Giunash (Gyujeong Jin). - CVE-2025-10501: Use after free in WebRTC. Reported by sherkito. - CVE-2025-10502: Heap buffer overflow in ANGLE. Reported by Google Big Sleep. Checksums-Sha1: 4450098802223b8d8c19cd86c038a84f9015e011 4063 chromium_140.0.7339.185-1~deb12u1.dsc 9965e95aba521ca0a6bcb1861106ad33f1f2ee50 993761236 chromium_140.0.7339.185.orig.tar.xz e7aa35bcc22e6fb61b6aafbd42e1a3d236eac8bc 8501572 chromium_140.0.7339.185-1~deb12u1.debian.tar.xz d9e364545366e5237f5993d458aa88c42f125f15 26765 chromium_140.0.7339.185-1~deb12u1_source.buildinfo Checksums-Sha256: 64839a4362938926dc801c0485b94859fdacc42722e1b28d18f9e7a24559468b 4063 chromium_140.0.7339.185-1~deb12u1.dsc f81f22c5d544c2a62df83bf2608e98d8ef822ed8cdc359ae805a8ed9e7549873 993761236 chromium_140.0.7339.185.orig.tar.xz c3e2b59c1aeb402c4ca5b4acecd1eb95e40ed45d5f5db4e0a054d9dd336641b1 8501572 chromium_140.0.7339.185-1~deb12u1.debian.tar.xz 81d3529df9dcb717563fcb08a15f2b726bfcc722dc87ffd3e87c18247fba25f1 26765 chromium_140.0.7339.185-1~deb12u1_source.buildinfo Files: a96bf7d7b4defc4b8ea425b14f272abd 4063 web optional chromium_140.0.7339.185-1~deb12u1.dsc 2e4618786d6a135df98a5106b59fba32 993761236 web optional chromium_140.0.7339.185.orig.tar.xz 83a9db2d6a279df32bfd331b4f36f1e5 8501572 web optional chromium_140.0.7339.185-1~deb12u1.debian.tar.xz 2d875800fc23d68ff0e65eb38b88c791 26765 web optional chromium_140.0.7339.185-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmjMPwUUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjcbWhAAlOqeLeWDOyaWRqnGKvF/q5R7i1vC gE1c4IvM8kRE/afi034Cr+LY/Extg1WNVNfvjigeQ57kuQVdcPAM39hkU4c0IC51 RKv8TFhbA8jRdb4XtuYhNdOW8JtoOd0SR1HEHRpvkfbmvI+Mj5TsYyZS2drhq40I DNmixdDE8fYpwjhjyrtoT4NEmFkx8/LHXbblD8kAE3s5TVRgC8fjlLbklsQ5P5SG 4nlx6tEEN0Urr3vmH+WjQBIAMABIf5JWab4++9IabmHd7tkEkKyQ+5l2tANvJy0+ DXZN5PWa9k4RlEh4PT5YL2ZT0GYAet8thePkX6jqP+f3QoxvR9MV9WfFdW+Q2GKX DA4sxFnUpOk1sp2YVlY9a0aWzZFuU0zooVqIyN18hxbqWDYch0JWSuDuE8w9wUhz ngBSo45oeZJ0jbLK0DP0H3mvwQ05wY2fot7wMQMnagFnUedZiXP/yoVy4AekoBun gpIYbA+c0BcTeY3tGJ8NnfoF0vPa+MkGC/TAf5yVhXY5Iop5DJYyI4pUYmS360HE fjRF8IfuYCZVtSPry6+0pahmJgmrEzebVmoRO5I/E1/m7aExrtMtVyKdB4WB+26B 68GgTb7uuriSCC76wFpCtCs2+7MWC3bB6ELxO9Xd3M/xfIEtpGJ7rc6iCb2HeCbE r4exnLlw9OE7sEU= =CJkZ -----END PGP SIGNATURE-----