-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Fri, 10 Oct 2014 00:49:02 +0000 Source: chromium-browser Binary: chromium chromium-dbg chromium-l10n chromium-inspector chromedriver Architecture: source i386 all Version: 38.0.2125.101-1 Distribution: unstable Urgency: medium Maintainer: Debian Chromium Maintainers <pkg-chromium-maint@lists.alioth.debian.org> Changed-By: Michael Gilbert <mgilbert@debian.org> Description: chromedriver - web browser - WebDriver support chromium - web browser chromium-dbg - web browser - debugging symbols chromium-inspector - web browser - page inspection support chromium-l10n - web browser - language packs Closes: 763421 764180 764373 764548 Changes: chromium-browser (38.0.2125.101-1) unstable; urgency=medium . * New upstream stable release: - CVE-2014-3188: A special thanks to Jüri Aedla for a combination of V8 and IPC bugs that can lead to remote code execution outside of the sandbox. - CVE-2014-3189: Out-of-bounds read in PDFium. Credit to cloudfuzzer. - High CVE-2014-3190: Use-after-free in Events. Credit to cloudfuzzer, Chen Zhang. - CVE-2014-3191: Use-after-free in Rendering. Credit to cloudfuzzer. - CVE-2014-3192: Use-after-free in DOM. Credit to cloudfuzzer. - CVE-2014-3193: Type confusion in Session Management. Credit to miaubiz. - CVE-2014-3194: Use-after-free in Web Workers. Credit to Collin Payne. - CVE-2014-3195: Information Leak in V8. Credit to Jüri Aedla. - CVE-2014-3196: Permissions bypass in Windows Sandbox. Credit to James Forshaw. - CVE-2014-3197: Information Leak in XSS Auditor. Credit to Takeshi Terada. - CVE-2014-3198: Out-of-bounds read in PDFium. Credit to Atte Kettunen. - CVE-2014-3199: Release Assert in V8 bindings. Credit to Collin Payne. - CVE-2014-3200: Various fixes from internal audits, fuzzing and other initiatives (Chrome 38). - Improved support for HiDPI displays (closes: #763421). * Add libgnome-keyring-dev build dependency (closes: #764548). * Install desktop file and icons again (closes: #764373). * Correctly handle old conffiles (closes: #764180). Checksums-Sha1: 6750ee0f73b10a25c5944cff0215633371bcbb09 4094 chromium-browser_38.0.2125.101-1.dsc 2e25563afe153a0598fcfed8f83286d3eabea530 248192100 chromium-browser_38.0.2125.101.orig.tar.xz 14d4e73ee9a75c3489eb14e0d9021cbfe4a8115f 176620 chromium-browser_38.0.2125.101-1.debian.tar.xz 37b12130ca624b76c307c67ac08d38db92a71408 37675328 chromium_38.0.2125.101-1_i386.deb edc053d389c449d8238b1773c4a609801b990c70 568290198 chromium-dbg_38.0.2125.101-1_i386.deb cbf6eff92c2799b564bb310e23327eb8f6b5f559 2850112 chromium-l10n_38.0.2125.101-1_all.deb 7d14ad877d5bf910bc40da1ff51a6758b26b26f2 793064 chromium-inspector_38.0.2125.101-1_all.deb c3cfcfdf01259cef177f9cbdbe9e015f291c72f5 2071290 chromedriver_38.0.2125.101-1_i386.deb Checksums-Sha256: 03badd2aa099a6c461a800fceba5fb7fda7e84f6160a58ef9a91761daddf5c77 4094 chromium-browser_38.0.2125.101-1.dsc d3303519ab471a3bc831e9b366e64dc2fe651894e52ae5d1e74de60ee2a1198a 248192100 chromium-browser_38.0.2125.101.orig.tar.xz 5e875672a3ee46f66bb286cc4369fda366d02812df8d81f7a90dc8fea3a9f3e8 176620 chromium-browser_38.0.2125.101-1.debian.tar.xz 9b7217716184a9c1b9b1c5c216b243b5ecca6d2848338537813c74e9836d1e44 37675328 chromium_38.0.2125.101-1_i386.deb 8553f0b8aea21967e0caed32c1a802ccf1a6f90748193dd0e779b02c08362dd9 568290198 chromium-dbg_38.0.2125.101-1_i386.deb 7db46d561b81c54ddcedf0d4d293c174ca048a70ca422593368bbeadfeace3c7 2850112 chromium-l10n_38.0.2125.101-1_all.deb 8895434f78ba1721facebecbfe454a5ec91dc0e27996c1916bb837c6367195cd 793064 chromium-inspector_38.0.2125.101-1_all.deb 4e76b384d6a2edbdfff7ecb37c6497a556be8a2ed5399ed08a38303ff33a4d87 2071290 chromedriver_38.0.2125.101-1_i386.deb Files: bbd85b44d5f90a3e57fa8f29d6f3849f 4094 web optional chromium-browser_38.0.2125.101-1.dsc be4d3ad6944e43132e4fbde5a23d1ab8 248192100 web optional chromium-browser_38.0.2125.101.orig.tar.xz 3e1957e66f1628648e27473828a1ea33 176620 web optional chromium-browser_38.0.2125.101-1.debian.tar.xz 5952fba3480932e2088fd838fb63e529 37675328 web optional chromium_38.0.2125.101-1_i386.deb cb4b0b940576d8ddf1f5546dd5e7015e 568290198 debug extra chromium-dbg_38.0.2125.101-1_i386.deb 4887228879eb7ad9924aa6880b0d66dc 2850112 localization optional chromium-l10n_38.0.2125.101-1_all.deb 6690a38a018b177af5b40a7052f70e89 793064 web optional chromium-inspector_38.0.2125.101-1_all.deb 51779cb58baa5b3acbc6ebad567f2741 2071290 web optional chromedriver_38.0.2125.101-1_i386.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQQcBAEBCgAGBQJUN9onAAoJELjWss0C1vRzTT4f/RvM++NDD9LOpKnarZOtJIWZ sxvQbseS07W+j4CQvf2gb6K7EQ52g79xzO/4G1NfAGPUvm7IM7tfPn+wFJDyWhBw g/VNB3gtbnOgqUwsl3VhoFv4iu83jp0rqntqFVWn6YC9nK4sfNHVLfy6+/jnrTGF 5aed171pWncSZh587Q14EvfK9RTARv938sL/k8IQ0URQL5+50WcBGkTOAduy6O0y ZfA8UWAUbJaKKtJ26wvRdAnh651EnbaFzByJrYdVzTg9Wo6XdRrm/f/p/92AFTDo AiArYwtunuPYrfvHj7Ixj7zFlpSKiKjdX9XwjwrKR0qkzJA3utilzbvuLA//0HwL SlIl26Xo2Y/S9jh4Ny5WNgp5pCGk1rjimAOcfpjeW6etYR9G+hqwRtq+VGLrru3N z+vZHkKUQMw5P7a20Six6frTlhBSKbPDoRbih7EsGsjmUzjEyOm5lurmjc7H6mIK NlCHVuEWke3IV4BtLUWYAQnVfLsXNfLQgbLAD+8/0TtB5vSJ6uG636rQjroZ0fLh lBly0T0v4TXTM47Q+/kC8C5CzuSbeQJHls26O/JC8KL7c7vpXEX5O8UBWLHGWU16 o1kGUhhLDrS5k+j+u2IDNJIEekzxpSdpcttNi1xs9dMQXf38/lBai7mNwItje3+i jKuSehc1/6ikQiZZ2yWI7/kOj3cNNQE/bqQgmOUedc2HMiAf66kqhKNSq5Zt1QRV wg6rm8PphS+8H4ydqMu8srTneLepdbjjcWFarqnqjproluBTyeN8f0KqqD2COKro +1/lk0wF7gjHMv2PaPVdTCm+jIIJcflCsEwGCA7F/p0ZVGWLIlgn2x3aGAfprgdA ujiSqzZqYpCD0yYlGajYsBOaV2B9X/S3OUAHVDeEk9xagyXDevq9O55d7Vkw5b/4 wDsRGT0TALlvAmpDh0qNB5A3YMiwl9x2WCYj0jdY2Q2d3R+r3wmiGKngrFpFXmLv ZbqkbyfZ7z12Zki/RWFRuZHPtrHvhHrIYw01OaoW5KWz52EhfgX4aBdkMhGA5AK2 /dT1Zoea9vq/gl2dmpP17KJk4VvEpzu9NhdYx4D/guBZSTSCxKS4IBVxzvxtslXu xCMLfv6ku72VfXNMEMODGENZ/Rs/xy/Wh5PrlMLeQ2mzM9qRmYU/aINf6BX/2aVv fecRuttV1P6RCL02lQ1Gc3N195bjDCStv/H4yeKx9vw+Q3oipl8iEhVlWeZ7wxyc QZiy39JR9jo0ft/mRvvw6/IM9mB3lCFJdcvqZQHxyw79k3XteV4eXzRCCQd6K+JX flwwaWEvJH/WrfhAnCbdRRpRUxQ+F43R33p4z/PIFpTZr0O6+gXxettPP9hNZSk= =Rp3X -----END PGP SIGNATURE-----