Debian Package Tracker
Register | Log in
Subscribe

chromium

web browser

Choose email to subscribe with

general
  • source: chromium (main)
  • version: 154.0.8037.92-1
  • maintainer: Debian Chromium Team (DMD)
  • uploaders: Andres Salomon [DMD] – Timothy Pearson [DMD] – Daniel Richard G. [DMD]
  • arch: all amd64 arm64 armhf i386 loong64 ppc64el
  • std-ver: 4.5.0
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 120.0.6099.224-1~deb11u1
  • o-o-sec: 120.0.6099.224-1~deb11u1
  • oldstable: 150.0.7871.100-1~deb12u1
  • old-sec: 154.0.8037.92-1~deb12u1
  • old-p-u: 150.0.7871.100-1~deb12u1
  • stable: 150.0.7871.100-1~deb13u1
  • stable-sec: 154.0.8037.92-1~deb13u1
  • testing: 154.0.8037.92-1
  • unstable: 154.0.8037.92-1
versioned links
  • 120.0.6099.224-1~deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 150.0.7871.46-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 150.0.7871.100-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 150.0.7871.100-1~deb13u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 150.0.7871.181-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 150.0.7871.181-1~deb13u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 154.0.8037.92-1~deb12u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 154.0.8037.92-1~deb13u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 154.0.8037.92-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • chromium (69 bugs: 0, 40, 29, 0)
  • chromium-common
  • chromium-driver
  • chromium-headless-shell
  • chromium-l10n
  • chromium-sandbox
  • chromium-shell
action needed
A new upstream version is available: 154.0.8037.97 high
A new upstream version 154.0.8037.97 is available, you should consider packaging it.
Created: 2026-10-04 Last update: 2026-10-04 18:30
11 security issues in trixie high

There are 11 open security issues in trixie.

11 important issues:
  • CVE-2026-103621: Integer overflow in Compositing in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103622: Use after free in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103623: Use after free in MediaStream in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103624: Use after free in Contextual Tasks in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103625: Type confusion in V8 in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103626: Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103627: Information leak in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
  • CVE-2026-103628: Out of bounds write in WebGL in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
  • CVE-2026-103629: Integer overflow in Skia in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103630: Use after free in FedCM in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103631: Buffer overflow in WebRTC in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Created: 2026-10-03 Last update: 2026-10-04 01:32
11 security issues in sid high

There are 11 open security issues in sid.

11 important issues:
  • CVE-2026-103621: Integer overflow in Compositing in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103622: Use after free in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103623: Use after free in MediaStream in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103624: Use after free in Contextual Tasks in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103625: Type confusion in V8 in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103626: Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103627: Information leak in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
  • CVE-2026-103628: Out of bounds write in WebGL in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
  • CVE-2026-103629: Integer overflow in Skia in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103630: Use after free in FedCM in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103631: Buffer overflow in WebRTC in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Created: 2026-10-03 Last update: 2026-10-04 01:32
11 security issues in forky high

There are 11 open security issues in forky.

11 important issues:
  • CVE-2026-103621: Integer overflow in Compositing in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103622: Use after free in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103623: Use after free in MediaStream in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103624: Use after free in Contextual Tasks in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103625: Type confusion in V8 in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103626: Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103627: Information leak in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
  • CVE-2026-103628: Out of bounds write in WebGL in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
  • CVE-2026-103629: Integer overflow in Skia in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103630: Use after free in FedCM in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103631: Buffer overflow in WebRTC in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Created: 2026-09-30 Last update: 2026-10-04 01:32
11 security issues in bookworm high

There are 11 open security issues in bookworm.

11 important issues:
  • CVE-2026-103621: Integer overflow in Compositing in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103622: Use after free in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103623: Use after free in MediaStream in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103624: Use after free in Contextual Tasks in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker who had compromised the renderer process to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103625: Type confusion in V8 in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103626: Incorrect authorization in FileSystem in Google Chrome on on Windows prior to 154.0.8037.97 allowed a remote attacker leveraging social engineering to potentially execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103627: Information leak in SVG in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to obtain sensitive information via a crafted HTML page. (Chromium security severity: Medium)
  • CVE-2026-103628: Out of bounds write in WebGL in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: Critical)
  • CVE-2026-103629: Integer overflow in Skia in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103630: Use after free in FedCM in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code outside the sandbox via a crafted HTML page. (Chromium security severity: High)
  • CVE-2026-103631: Buffer overflow in WebRTC in Google Chrome prior to 154.0.8037.97 allowed a remote attacker to execute arbitrary code inside the sandbox via a crafted HTML page. (Chromium security severity: High)
Created: 2026-10-03 Last update: 2026-10-04 01:32
lintian reports 15 errors and 3030 warnings high
Lintian reports 15 errors and 3030 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2026-09-17 Last update: 2026-10-02 00:01
Fails to build during reproducibility testing normal
A package building reproducibly enables third parties to verify that the source matches the distributed binaries. It has been identified that this source package produced different results, failed to build or had other issues in a test environment. Please read about how to improve the situation!
Created: 2026-10-03 Last update: 2026-10-04 19:34
4 bugs tagged help in the BTS normal
The BTS contains 4 bugs tagged help, please consider helping the maintainer in dealing with them.
Created: 2019-03-21 Last update: 2026-10-04 19:30
7 bugs tagged patch in the BTS normal
The BTS contains patches fixing 7 bugs, consider including or untagging them.
Created: 2026-09-02 Last update: 2026-10-04 19:30
version in VCS is newer than in repository, is it time to upload? normal
vcswatch reports that this package seems to have a new changelog entry (version 154.0.8037.92-1.1, distribution unstable) and new commits in its VCS. You should consider whether it's time to make an upload.

Here are the relevant commit messages:
commit 60c1d090cdd4b769e2c0c724ab53cdc9e2258a19
Author: Daniel Richard G. <skunk@iSKUNK.ORG>
Date:   Thu Oct 1 20:00:47 2026 -0400

    Add changelog entry for the *.lintian-overrides updates

commit 04585ba88dd74500dde13b54dee448fff7e061b1
Author: Daniel Richard G. <skunk@iSKUNK.ORG>
Date:   Thu Oct 1 16:26:29 2026 -0400

    Relocate unofficial ungoogled-chromium patches
    
    This fixes the u-c conversion process, which assumes that patches
    under d/patches/ungoogled/ are redundant with the u-c patch set.

commit bb84aed431fc9f4cf41681155c96ba7ca611b6cf
Merge: ba2ff1f 8e327aa
Author: Andres Salomon <dilinger@debian.org>
Date:   Thu Oct 1 23:08:15 2026 +0000

    Merge branch 'feature/lintian-updates' into 'master'
    
    Update lintian overrides
    
    See merge request chromium-team/chromium!40

commit 8e327aa7c0ddc109e474319b1642c88e1b5065ce
Author: Daniel Richard G. <skunk@iSKUNK.ORG>
Date:   Mon Jun 15 21:08:34 2026 -0400

    Update lintian overrides

commit 47b25c84738d092eea950aaab6c636ab2679dc57
Author: Andres Salomon <dilinger@queued.net>
Date:   Fri Jun 12 17:27:43 2026 -0400

    add CVEs and release 149.0.7827.114-1

commit 3727fa5be43a0e0dc97bbe2326bea91b2150ab5c
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed Jun 10 01:44:11 2026 -0400

    Add changelog entry for Jianfeng's prior commit.

commit 5f94e0a4714acad75f858f116faa79709db35227
Author: Jianfeng Liu <liujianfeng1994@gmail.com>
Date:   Wed Jun 10 10:48:55 2026 +0800

    d/patches/loongarch64: remove 0024-fix-libyuv-lsx.patch
    
    Upstream has reverted libyuv to 644251f, which does not include the
    lsx issue introduced by d445250. So we can just remove this patch.

commit a38d48a7341a4d1d97083bfff36b8396b581e669
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 9 04:01:33 2026 -0400

    release 149.0.7827.102-1

commit 08a91da83b67988ab88921d49e87bab38b03937a
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 9 04:00:25 2026 -0400

    refresh loongarch64/0024-fix-libyuv-lsx.patch

commit 4d719cb3c58d943083a5fbcc02fb43c5dd3cd488
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 9 03:34:59 2026 -0400

    add CVEs for .102

commit a14620261949995a457533f8489ce1517ed714fa
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Sun Jun 7 20:22:05 2026 -0500

    Document ppc64el patch changes in changelog

commit fac2f64e77b1bea718bf43127b7ed2b9767be237
Author: Andres Salomon <dilinger@queued.net>
Date:   Sun Jun 7 19:56:52 2026 -0400

    try fixing arm* builds (untested though!)

commit 6038ccda172698fe12005d5baebfeac8c93db63a
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Sat Jun 6 23:05:15 2026 -0500

    Push correct libaom patch for ppc64le
    
    Stale version inadvertently pushed while travelling
    
    Also push refreshed ISA 3.0 patch (disabled by default)

commit f75dc3c071449b299e011fef707d64d732359e98
Author: Andres Salomon <dilinger@queued.net>
Date:   Sat Jun 6 04:20:29 2026 -0400

    release 149.0.7827.53-1

commit b630965267886c1b9695db9d6c1572dac240d1de
Author: Jianfeng Liu <liujianfeng1994@gmail.com>
Date:   Sat Jun 6 12:51:02 2026 +0800

    add changelog entry for changes on loongarch64

commit 844e93f12e948a9d8c091ca91388e3c3d70294b1
Author: Andres Salomon <dilinger@queued.net>
Date:   Fri Jun 5 20:50:34 2026 -0400

    properly delete the embedded harfbuzz

commit a73e5cd8a265843fcbe951b6a3df9069ade96af8
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Fri Jun 5 17:45:15 2026 -0500

    Add missing patch for ppc64le

commit 58eae5228e2cb9e16bc26cae76b5ba6de9bd92fc
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Fri Jun 5 17:09:20 2026 -0500

    Refresh all ppc64el patches to eliminate fuzz
    
    This does not change functionality

commit 0ec253e209a502220d13372b05ef65762ed93540
Author: Andres Salomon <dilinger@queued.net>
Date:   Fri Jun 5 11:56:18 2026 -0400

    add CVEs

commit b8cde0e45165486e37031005a071245e0eabf22f
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Fri Jun 5 09:10:51 2026 -0500

    Ensure libvpx VSX support is turned off until the VP9 artifacting can be resolved

commit 2e221e40fa4bccdedee68a551991730649a05041
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Fri Jun 5 08:05:36 2026 -0500

    Update ppc64le patches for new Chromium version
    
    Build and operational checks good

commit 7150cd011ab32971aa0ca96a92340a8ed0a73f5d
Author: Jianfeng Liu <liujianfeng1994@gmail.com>
Date:   Fri Jun 5 18:07:15 2026 +0800

    add patches to fix loong64

commit 5e7e8ed3627c0d77325891ec872bb5ddcdf646ee
Author: Andres Salomon <dilinger@queued.net>
Date:   Thu Jun 4 05:05:26 2026 -0400

    Tag some bookworm-specific changelog entries

commit fddb323b39a6e2c58817c38e822d69351f556493
Author: Andres Salomon <dilinger@queued.net>
Date:   Thu Jun 4 04:40:41 2026 -0400

    refresh bookworm/dav1d-drop-hdr.patch

commit 587c4cba802b16466ccf64dab262dfb4734350ec
Author: Daniel Richard G. <skunk@iSKUNK.ORG>
Date:   Wed Jun 3 22:17:03 2026 -0400

    Patch updates from my Ubuntu jammy test build

commit bedcfa448b3c49ad1fbe30f94961c91051a0865a
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed Jun 3 20:22:52 2026 -0400

    update two rust patches for trixie

commit b9bf3e2bb4f63aad7a70effd50f223a5570a32c6
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed Jun 3 05:40:08 2026 -0400

    another annoying llvm-19 build fix

commit eba04af56bd317c7763c54bd5455a396b7564caf
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed Jun 3 03:39:34 2026 -0400

    add another value_or fix

commit 6fd3dfd86173858fadc377b0e2a39210656fb30d
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 2 21:11:33 2026 -0400

    disable fixes/missing-dep.patch
    
    I don't know if this is still needed or not (and upstream reworked
    dependencies here), so let's try the build without it.

commit dbf8132946345a9a3dfdbacb7a4ea29fccda798c
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 2 19:04:08 2026 -0400

    start preparing v149

commit 9ee83c40e6fb5fb18b09db118b81f5f2cbfe86fe
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue Jun 2 14:37:49 2026 -0400

    release 148.0.7778.215-2

commit d538c19215391b13f6e04839c7255f5c9efecb63
Author: Juan Manuel Mendez Rey <juan.mendezr@proton.me>
Date:   Tue Jun 2 00:18:56 2026 +0200

    Pick bytemuck's core::simd support by rust version to fix rustc 1.95 FTBFS
    
    The bytemuck crate vendored by Chromium (1.25.0) provides the Rust code that
    marks the standard SIMD vector types (core::simd) as safe to treat as raw
    bytes (its Zeroable and Pod traits). It ships two variants of that code and
    chooses between them by the compiler's release date. The older variant
    mentions core::simd::LaneCount, a type that rust 1.95 removed; the newer one
    does not.
    
    On Debian's stable rust 1.95 the date check guesses wrong: it treats 1.95 as
    older than it really is and picks the older variant, which then fails to
    compile because LaneCount no longer exists (errors E0425/E0405).
    
    Choose the variant by rust version instead of by date: rust before 1.95 uses
    the older variant (so trixie and bookworm, on rust 1.85, keep building) and
    rust 1.95 or newer uses the newer one (sid). Built successfully on both.
    
    Not CEF-specific; this fixes the normal chromium build too.

commit a521c0aaffb10fb80a7af0b5af538eebdf4429d5
Author: Andres Salomon <dilinger@debian.org>
Date:   Fri May 29 13:26:25 2026 -0400

    release 148.0.7778.215-1

commit cbdd1e47e729f87f4e8da10bc4b49985ee4ae382
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 20 15:32:46 2026 -0400

    add CVEs to prior release

commit 13135c9a4aff70c81492aae5e25bf3999a8d300e
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue May 19 21:17:31 2026 -0400

    release 148.0.7778.178-1

commit 510580524299ca2c94ea5c6fa96f429a6c451ab0
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue May 19 18:28:32 2026 -0400

    prep new release (still awaiting CVEs)

commit 44ecc7c88a975b392cd4fc9b1db1432d14eeb1f4
Merge: 0ab80ba 95ed12b
Author: Jianfeng Liu <liujianfeng1994@gmail.com>
Date:   Mon May 18 16:02:58 2026 +0800

    Merge branch 'patch-1' into 'master'
    
    d/p/file_as_c_str.patch:  also include implementation for loong64
    
    See merge request chromium-team/chromium!39

commit 95ed12b51d07e0918122c2fe7a5c51a8960eeb39
Author: Miao Wang <shankerwangmiao@gmail.com>
Date:   Mon May 18 16:02:58 2026 +0800

    d/p/file_as_c_str.patch:  also include implementation for loong64

commit 0ab80bac7302673b948a0c3a44b38816b866371d
Author: Andres Salomon <dilinger@queued.net>
Date:   Thu May 14 16:39:57 2026 -0400

    release 148.0.7778.167-1

commit a0912b7ac9c688bdc6c7d16d8c830e81af7d685a
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue May 12 15:09:17 2026 -0400

    Update for .167 (still missing CVEs)

commit 076ebdf11b500181f536aa2eff2503ec42e9814e
Author: Andres Salomon <dilinger@queued.net>
Date:   Thu May 7 18:39:38 2026 -0400

    note that the prior fix is for stable/oldstable only

commit 3a1983fa1b8426c431dcfed3ee5ba1aefc0e1b44
Author: Andres Salomon <dilinger@queued.net>
Date:   Thu May 7 18:10:29 2026 -0400

    hopefully fix arm* and ppc64 builds

commit 02b967c68899f54c56179377be73536b9a331a74
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 6 21:28:27 2026 -0400

    fix builds again.

commit 6f52e5d5125a1410101b46df08013f14c71e978b
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 6 19:25:05 2026 -0400

    release 148.0.7778.96-2

commit bef7322e4b1914c10a3bd9d724068215f47f6a6e
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 6 19:23:11 2026 -0400

    It turns out the stuff we needed moved into esbuild-wasm.
    
    I can't guarantee the buildds will be able to satisfy those
    build-deps, but we'll see!

commit 9649560e2ee25d4e6bd1e7ddeb779849388ef83f
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 6 18:30:14 2026 -0400

    Update for new patch to esbuild. Note that this still doesn't build..

commit 78d27b31a3d7fd759c276579c4e72cb5200ed965
Author: Andres Salomon <dilinger@queued.net>
Date:   Wed May 6 16:33:23 2026 -0400

    add CVEs and release 148.0.7778.96-1

commit ce2faac3e689bcf3105336b1193ae05a11688caf
Author: Daniel Richard G. <skunk@iSKUNK.ORG>
Date:   Tue May 5 17:27:17 2026 -0400

    Drop unknown (to clang-19/20) -Wlifetime-safety-permissive flag

commit ee0d1ba8b8f9a21f5c43d386de54887d54fdb55c
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue May 5 15:10:24 2026 -0400

    remove "&source=chrome.ob" tracking stuff from omnibox search

commit 2d48f5aa4e5f8cee9c09f7b2fd7e92b666706bc2
Author: Andres Salomon <dilinger@queued.net>
Date:   Tue May 5 13:02:21 2026 -0400

    document removal of eslint.patch (actual removal in bookworm branch)

commit 397d12e115b4b0e04058251611bced97d9862065
Author: Jianfeng Liu <liujianfeng1994@gmail.com>
Date:   Tue May 5 15:53:16 2026 +0800

    update loongarch64 patches for v148

commit 74e5594bd544b49d8c4ebdac9c72d8bd7811d81b
Author: Timothy Pearson <tpearson@raptorengineering.com>
Date:   Tue May 5 01:17:10 2026 -0500

    update ppc64el patches
Created: 2026-10-02 Last update: 2026-10-02 02:02
7 open merge requests in Salsa normal
There are 7 open merge requests for this package on Salsa. You should consider reviewing and/or merging these merge requests.
Created: 2026-09-30 Last update: 2026-10-02 00:30
RFH: The maintainer is looking for help with this package. normal
The current maintainer is looking for someone who can help with the maintenance of this package. If you are interested in this package, please consider helping out. One way you can help is offer to be a co-maintainer or triage bugs in the BTS. Please see bug number #1016047 for more information.
Created: 2022-07-26 Last update: 2022-07-26 03:32
AppStream hints: 1 warning normal
AppStream found metadata issues for packages:
  • chromium: 1 warning
You should get rid of them to provide more metadata about this software.
Created: 2020-06-01 Last update: 2020-06-01 01:12
debian/patches: 140 patches to forward upstream low

Among the 144 debian patches available in version 154.0.8037.92-1 of the package, we noticed the following issues:

  • 140 patches where the metadata indicates that the patch has not yet been forwarded upstream. You should either forward the patch upstream or update the metadata to document its real status.
Created: 2023-02-26 Last update: 2026-10-01 10:19
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.7.4 instead of 4.5.0).
Created: 2020-11-17 Last update: 2026-10-01 01:31
news
[rss feed]
  • [2026-10-04] chromium 154.0.8037.92-1 MIGRATED to testing (Debian testing watch)
  • [2026-10-01] Accepted chromium 154.0.8037.92-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-30] Accepted chromium 154.0.8037.92-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-30] Accepted chromium 154.0.8037.92-1 (source) into unstable (Andres Salomon)
  • [2026-09-29] chromium 154.0.8037.57-1 MIGRATED to testing (Debian testing watch)
  • [2026-09-25] Accepted chromium 154.0.8037.57-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-24] Accepted chromium 154.0.8037.57-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-24] Accepted chromium 154.0.8037.57-1 (source) into unstable (Andres Salomon)
  • [2026-09-22] chromium 153.0.8010.52-1 MIGRATED to testing (Debian testing watch)
  • [2026-09-19] Accepted chromium 153.0.8010.52-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-19] Accepted chromium 153.0.8010.52-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-18] Accepted chromium 153.0.8010.52-1 (source) into unstable (Andres Salomon)
  • [2026-09-17] Accepted chromium 153.0.8010.47-2~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-17] Accepted chromium 153.0.8010.47-2~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-16] Accepted chromium 153.0.8010.47-2 (source) into unstable (Andres Salomon)
  • [2026-09-16] Accepted chromium 153.0.8010.47-1 (source) into unstable (Andres Salomon)
  • [2026-09-05] Accepted chromium 152.0.7977.82-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-05] Accepted chromium 152.0.7977.82-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-05] Accepted chromium 152.0.7977.82-1 (source) into unstable (Andres Salomon)
  • [2026-09-03] Accepted chromium 152.0.7977.75-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-09-03] Accepted chromium 152.0.7977.75-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-09-02] Accepted chromium 152.0.7977.75-1 (source) into unstable (Andres Salomon)
  • [2026-08-31] Accepted chromium 152.0.7977.64-1 (source) into unstable (Andres Salomon)
  • [2026-08-27] Accepted chromium 151.0.7922.173-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-08-23] Accepted chromium 151.0.7922.173-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-08-22] Accepted chromium 151.0.7922.173-1 (source) into unstable (Andres Salomon)
  • [2026-08-20] Accepted chromium 151.0.7922.169-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • [2026-08-19] Accepted chromium 151.0.7922.169-1~deb12u1 (source) into oldstable-security (Andres Salomon)
  • [2026-08-19] Accepted chromium 151.0.7922.169-1 (source) into unstable (Andres Salomon)
  • [2026-08-13] Accepted chromium 151.0.7922.137-1~deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Andres Salomon)
  • 1
  • 2
bugs [bug history graph]
  • all: 77 83
  • RC: 0
  • I&N: 40 42
  • M&W: 37 41
  • F&P: 0
  • patch: 7
  • help: 4
links
  • homepage
  • lintian (15, 3030)
  • buildd: logs, reproducibility, cross
  • popcon
  • browse source code
  • other distros
  • security tracker
  • screenshots
  • debian patches

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing