-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Wed, 10 Dec 2025 22:14:03 -0500
Source: chromium
Architecture: source
Version: 143.0.7499.109-1
Distribution: unstable
Urgency: high
Maintainer: Debian Chromium Team <chromium@packages.debian.org>
Changed-By: Andres Salomon <dilinger@debian.org>
Changes:
chromium (143.0.7499.109-1) unstable; urgency=high
.
[ Andres Salomon ]
* New upstream security release.
- CVE-????-?????: Under coordination.
- CVE-2025-14372: Use after free in Password Manager.
Reported by Weipeng Jiang (@Krace) of VRI.
- CVE-2025-14373: Inappropriate implementation in Toolbar.
Reported by Khalil Zhani.
.
[ Jianfeng Liu ]
* set use_av1_hw_decoder=true for arm64 and add build dep
linux-libc-dev (>= 6.5). This will enable V4L2 stateful/stateless AV1
decoder found on some arm SoCs.
* d/patches:
- upstream/fix-rk3588-v4l2-av1-decoder.patch: Fixes upstream issue
https://crbug.com/464638992. This patch is backported from v145
and will fix green frame issue when playing av1 video on RK3588.
- ppc64le/sandbox/0001-sandbox-Enable-seccomp_bpf-for-ppc64.patch:
fix FTBFS on ppc64el related to conflicting kernel_stat patches.
Checksums-Sha1:
3c742db85bc8d91342acb836c4e787b3e02dcf5f 4087 chromium_143.0.7499.109-1.dsc
96ebe804db4181d9c936c38f83a47b4cf511cc7b 714315812 chromium_143.0.7499.109.orig.tar.xz
f5a6c6fab27273bdf8a7c66fd2b5f819220210aa 440680 chromium_143.0.7499.109-1.debian.tar.xz
cc01989660a1cf72edc982bcbdacd4e49edb37bc 26702 chromium_143.0.7499.109-1_source.buildinfo
Checksums-Sha256:
52a53a80285e0c0c6505791b0e94b330b28cc5368cb5fa85e4a4101606a376f8 4087 chromium_143.0.7499.109-1.dsc
c20a7f0e317728e49f047840828cad4fefc7ae385bd9e4f063e7c22fa3dd914f 714315812 chromium_143.0.7499.109.orig.tar.xz
eb4230ccff396c23947e96c70c0001f804b7747780bee5ccdcb29c28b1e8d000 440680 chromium_143.0.7499.109-1.debian.tar.xz
aef2de4f20e4a8711bb642cb3dd043cd88b1dd9d6ce9b7f8150cfe29e3666bcf 26702 chromium_143.0.7499.109-1_source.buildinfo
Files:
9bd0d57905b56f47cc212263ccf1986f 4087 web optional chromium_143.0.7499.109-1.dsc
6eb776ee2fd28c858e00e9cb18ffaebd 714315812 web optional chromium_143.0.7499.109.orig.tar.xz
17fb4e0d7762490b3dab9016362732e6 440680 web optional chromium_143.0.7499.109-1.debian.tar.xz
0c5e0acc052b91f2c50a991b156ba690 26702 web optional chromium_143.0.7499.109-1_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=Da4c
-----END PGP SIGNATURE-----