-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Tue, 20 Jan 2026 20:25:10 -0500
Source: chromium
Architecture: source
Version: 144.0.7559.96-1~deb12u1
Distribution: bookworm-security
Urgency: high
Maintainer: Debian Chromium Team <chromium@packages.debian.org>
Changed-By: Andres Salomon <dilinger@debian.org>
Changes:
chromium (144.0.7559.96-1~deb12u1) bookworm-security; urgency=high
.
[ Andres Salomon ]
* New upstream security release.
- CVE-2026-1220: Race in V8. Reported by @p1nky4745.
* d/scripts/unbundle: switch to bundled libxml2, so that we get features of
XML_PARSE_NO_XXE (which disables loading of external content) in
trixie/bookworm.
* d/copyright: stop deleting the bundled libxml2.
* d/clean: stop deleting the libxml2 symlink.
* d/control: drop libxml2-dev build dep.
* d/patches:
- trixie/libxml-parseerr.patch: drop; we're using bundled libxml.
- trixie/libxml2-no-xxe.patch: drop; we're using bundled libxml.
.
[ Daniel Richard G. ]
* d/patches/bookworm/bindgen.patch: Move the libclang edit from here ...
* d/patches/fixes/bindgen-paths.patch: ... over to this new patch, which
takes a simpler approach that is easier to override later in the series ...
* d/patches/ppc64le/fixes/bindgen.patch: ... and makes this patch redundant.
* d/patches/ppc64le/sandbox/0001-sandbox-Enable-seccomp_bpf-for-ppc64.patch:
Add a __NR_mseal definition that is needed in the Ubuntu builds.
Checksums-Sha1:
eecc1d0f573b35318f4b586add361347ee6ebccc 4046 chromium_144.0.7559.96-1~deb12u1.dsc
41baa4e392a418fb4a2fdd73c9e5044eb935b5df 734367996 chromium_144.0.7559.96.orig.tar.xz
ae2441c1f88b028091d85d88d8ede9dba3a488c3 8531152 chromium_144.0.7559.96-1~deb12u1.debian.tar.xz
5c3833dbc713e3135abb436b2e0f5a5ea8dde91a 26825 chromium_144.0.7559.96-1~deb12u1_source.buildinfo
Checksums-Sha256:
7bc543112d970a83b922585e0345dda838f88df27116b492c74055c995a286fe 4046 chromium_144.0.7559.96-1~deb12u1.dsc
25358df2bc37accbd02337b6ec04b79d051e6a4bd1379b9265a0605ab9d481c1 734367996 chromium_144.0.7559.96.orig.tar.xz
8755fba4f0ea7098521164db6eb0e879d1d35d9b2e92e47ad30265970c88d2a7 8531152 chromium_144.0.7559.96-1~deb12u1.debian.tar.xz
76f3e5fd4430744bd512017b034826fe2230462e6a6299df2a13eabd4fda6289 26825 chromium_144.0.7559.96-1~deb12u1_source.buildinfo
Files:
6bfa7b6522d14e4dc5e65da6cd12a091 4046 web optional chromium_144.0.7559.96-1~deb12u1.dsc
03bae05ed88c11fd27df15c8df41e0a3 734367996 web optional chromium_144.0.7559.96.orig.tar.xz
805b3d7bd3560cf05458b887aef7764f 8531152 web optional chromium_144.0.7559.96-1~deb12u1.debian.tar.xz
966429b8272340151e109a57dc9e9e9a 26825 web optional chromium_144.0.7559.96-1~deb12u1_source.buildinfo
-----BEGIN PGP SIGNATURE-----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=gZIm
-----END PGP SIGNATURE-----