-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 21 Jan 2016 00:06:10 +0000 Source: chromium-browser Binary: chromium chromium-l10n chromedriver Architecture: source amd64 all Version: 48.0.2564.82-1 Distribution: unstable Urgency: medium Maintainer: Debian Chromium Maintainers <pkg-chromium-maint@lists.alioth.debian.org> Changed-By: Michael Gilbert <mgilbert@debian.org> Description: chromedriver - web browser - WebDriver support chromium - web browser chromium-l10n - web browser - language packs Changes: chromium-browser (48.0.2564.82-1) unstable; urgency=medium . * New upstream stable release: - CVE-2016-1612: Bad cast in V8. Credit to cloudfuzzer. - CVE-2016-1613: Use-after-free in PDFium. Credit to anonymous. - CVE-2016-1614: Information leak in Blink. Credit to Christoph Diehl. - CVE-2016-1615: Origin confusion in Omnibox. Credit to Ron Masas. - CVE-2016-1616: URL Spoofing. Credit to Luan Herrera. - CVE-2016-1617: History sniffing with HSTS and CSP. Credit to jenuis. - CVE-2016-1618: Weak random number generator in Blink. Credit to Aaron Toponce. - CVE-2016-1619: Out-of-bounds read in PDFium. Credit to Keve Nagy. - CVE-2016-1620: Various fixes from internal audits, fuzzing and other initiatives. - Multiple vulnerabilities in V8 fixed at the tip of the 4.8 branch (currently 4.8.271.17). Checksums-Sha1: 7f08594f55945869c083cecf7bc1897e7b17bcad 3903 chromium-browser_48.0.2564.82-1.dsc ff138d87a621f076dda7c43470127f2e9900dca6 432111956 chromium-browser_48.0.2564.82.orig.tar.xz 22d8d9d900db43ccfa426ce0a418a27b00768179 118832 chromium-browser_48.0.2564.82-1.debian.tar.xz 40615c7986f5b4e76c66e48c2bcbf60c1589cf6d 29715592 chromedriver-dbgsym_48.0.2564.82-1_amd64.deb d4c8a3cf77af4efa625e7c9308b1be7d9ff8f645 2375206 chromedriver_48.0.2564.82-1_amd64.deb d9073fc3d72d994f8ab3422b02ac2fe89e351dce 736415174 chromium-dbgsym_48.0.2564.82-1_amd64.deb daf557e05b0d0de772cf2620d2897ee9c6c9667e 3125558 chromium-l10n_48.0.2564.82-1_all.deb 2f5387414ec8ab9fe39eb6b88d1107e46fde2a75 38861804 chromium_48.0.2564.82-1_amd64.deb Checksums-Sha256: ca461f3804e89101f1aa1a1954e4fb24ecb660b7ae7352fef017f443d03d7ce3 3903 chromium-browser_48.0.2564.82-1.dsc 576756b10e5a11eb7d64e9d066fff29aebcdc57f346cd9caa93e2ce03a94436e 432111956 chromium-browser_48.0.2564.82.orig.tar.xz 7318f51cf0f66038fae0a7ce59efef0fe3ecdfdfa484f716b8eed36181e82a1e 118832 chromium-browser_48.0.2564.82-1.debian.tar.xz 7099afa4515118130028599f6378d0723e350e71a1b41fa146f27c502f53d5c4 29715592 chromedriver-dbgsym_48.0.2564.82-1_amd64.deb 47f52399455e17641b3a49ea48c65914927b95882d8e0f46294aca74428f0402 2375206 chromedriver_48.0.2564.82-1_amd64.deb 6462e391baf18dfa107de85e69349f271a1a5bfa4bd5dfcbf63ee11a82600cff 736415174 chromium-dbgsym_48.0.2564.82-1_amd64.deb a56edc212eb969ee1755ee3de8b1709e079a1ba75c73bb6ce06eb073a7b9bfc3 3125558 chromium-l10n_48.0.2564.82-1_all.deb b311c9f877e05cc1ed064ff334f535d0710724a02aeb117f7823e08f236be3d2 38861804 chromium_48.0.2564.82-1_amd64.deb Files: 49a1b68a0924d540a4ebddade9ff3090 3903 web optional chromium-browser_48.0.2564.82-1.dsc 27b885370d37019249eae55c41b8ca36 432111956 web optional chromium-browser_48.0.2564.82.orig.tar.xz 891b8ecc5aabef3169c67077efc69c8d 118832 web optional chromium-browser_48.0.2564.82-1.debian.tar.xz abab9fbdc4a1e352cb87fba38c79daeb 29715592 debug extra chromedriver-dbgsym_48.0.2564.82-1_amd64.deb 9d6f21fc45001acab70c6af8630a656e 2375206 web optional chromedriver_48.0.2564.82-1_amd64.deb c90dcab3aa3dcf0be4ce1519763de140 736415174 debug extra chromium-dbgsym_48.0.2564.82-1_amd64.deb c704dedd5a323de8df400016244159bc 3125558 localization optional chromium-l10n_48.0.2564.82-1_all.deb 8b0ab9986b4790492d44ec5933d530ad 38861804 web optional chromium_48.0.2564.82-1_amd64.deb -----BEGIN PGP SIGNATURE----- Version: GnuPG v1 iQQcBAEBCgAGBQJWoN6tAAoJELjWss0C1vRzfzMgAMaQJof4sTGem+aWuJVmnIQF 6eHJEMZBYUk9tktG/S03TvqSc2WC+foVgvhERnuELnomgZ81RiSvYy0VYrEZuzt0 YCO8nIQcZdrTLXSt34GLupPLI/dRJz9u8N4NF8cZ6zya++lDb1gjbtYt8q3qR5EK j4LylXqhwjHuROif8ReXM2L7PPBsVA/GvDRV6Tq9OnQqErJL0rpONIasCi2h42u2 nnHaiXcpN6XSpKc8WSqn62txQMSN6aQddL3BQmjdgdbSNHOWaN6x0Rh5rYqmMWle mVSRa1z0/iGrMgZp4QxCQDum0fSbnXneMokBjtrsnZDEUpR3emGE9NFZ1wrF4EOF 8AHRLNUbsejx+ihqQAaGikhvRg4Po5DEVZ1XGIZlTGVaGs1yK5UvASyyIjIlgdWl C7bOUQjngZ2b3XvAVyk39hwyTacbnyVyyTNDK4CM7SMtPl0cg/WPRmGAagxEeZNe 2u7Ot8tNm8owBvFj+oOEpwJ1teD6e2R8Y9mYXGRL5oD7rHmPTY72QeZ7fzqr7qqr OtgjwnUnTjlmcdhG+XPkXEoL5Kkwkfo6dC6J22oqEH+PuqIzJH7QFacfZ7Adc83P doMMEuOUGlv7W8oDbfSMMsP6QN+3OLCyRQQik88aff4TbFGjMNP0JgzptE/u5D7E HmoprhtEaLe8sYAEAVlUsGvMd1/dMhqqX9xVAOUKZasrX0MIGUIB8Ur1uPlKIcIK d2+HUAcL+1JIUUQG8behlidWOz2B1T3Wc17INHgl4To0BfND52rsoRAowz/fCH52 v/BXW0xkTGN+bQ11yn4by/IVhnL+zWotgvRPvcKKSBWs2+0G7HakoUYagGQFIIYf eVFKJKpq2kP9NzEwgu2L9vFTfx6PYXQu4qlNN2QPYILwOrjA5vlB3d+hj7fvHaVR BgyyImx84lTXpO7jH7+oWmlMj9qqpU8z/06M5LH+2wLRWPJPt/CbsKZYMODJwahF bH9hAfbrZ+6EOMUQpykc6zBYUDdr6k86sElNE+VL1uZ7oaP1ce83N92djsqVNTaq cvjstWelyTscYDChfFsgvnBVFRV+crwzPOw1CqeIf8f29okR4c1E3UzYjVrOOtON 5uBeXAui5OdYIFrCHZajRNPDNZ6jAYiKNyMEfPzSDpgGI93sLJWo5qVslPILBRPY RXxr1iRAf/NMfY2hSvdp4bBIb1+/4qwZ/zGn7OXbT1XuPNBl3GrikomHtxl3AO8C xHul1G1/HpaGcVPkIgrv8X1QKYzVcGyRvqVtTKOw2cg3szBaJ828A9JzQoNPCs43 zyvgov5c/jNuKmfK9Od1qQ8Eoa6r+DORyBe8FgLDWsYy/OXi/Z3XsbLMpac3OWk= =gFST -----END PGP SIGNATURE-----