-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 23 Aug 2023 08:58:00 -0500 Source: chromium Binary: chromium-l10n Architecture: all Version: 116.0.5845.110-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: all Build Daemon (x86-grnet-02) Changed-By: Timothy Pearson Description: chromium-l10n - web browser - language packs Changes: chromium (116.0.5845.110-1~deb12u1) bookworm-security; urgency=high . [ Timothy Pearson ] * New upstream security release. - CVE-2023-4430: Use after free in Vulkan. Reported by Cassidy Kim(@cassidy6564). - CVE-2023-4429: Use after free in Loader. Reported by Anonymous. - CVE-2023-4428: Out of bounds memory access in CSS. Reported by Francisco Alonso (@revskills). - CVE-2023-4427: Out of bounds memory access in V8. Reported by Sergei Glazunov of Google Project Zero. - CVE-2023-4431: Out of bounds memory access in Fonts. Reported by Microsoft Security Researcher. . [ Andres Salomon ] * d/patches/upstream hvec.patch: add arm* v4l2 build fix. * d/rules: FTBFS if we're uploading to -security distribution w/out CVEs. Checksums-Sha1: 61ad96b02783e794059b7fdb56ba0ec48cfbf063 6401664 chromium-l10n_116.0.5845.110-1~deb12u1_all.deb 91608d3622a1449f74f39f1a61fa1f39f423eb64 21216 chromium_116.0.5845.110-1~deb12u1_all-buildd.buildinfo Checksums-Sha256: 4cc8e926492c5cdb63110f48598dfd5124f8b64e8098d77f3fa58d6c1898c503 6401664 chromium-l10n_116.0.5845.110-1~deb12u1_all.deb 3a31e9466f38e3097251d2e0028839303e51f7e8173148db948a58d89b307aa9 21216 chromium_116.0.5845.110-1~deb12u1_all-buildd.buildinfo Files: 0ea4cc3ead1af7c2b261215ec725f02e 6401664 localization optional chromium-l10n_116.0.5845.110-1~deb12u1_all.deb 453f4674e67f3f49d41471f2c51f435a 21216 web optional chromium_116.0.5845.110-1~deb12u1_all-buildd.buildinfo -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEzW1K1578DQd6MDTQEbLkkg2OS0oFAmToHgMACgkQEbLkkg2O S0q6Ew/7BtJmDw01CiCoQfXizu2sl0OUvemiLrV8kPXb0wKFTSS2UtQuEuYRaeWp rVD8GZvEXqKhxBrSsdkFYhYQphsTo1GmbxME35AKjEDRdrsdaAjJ95lAmVocVV3Q rg5k4JwW78XfmMSkMgQXoUzqKJHb3wyHTmXbkUsobmXVQ5vZETeDZft4Am4GV9+M msRWb850wUXz/Vs4456SJGAd/xoMv9FFZo2sZ1ZOKiALElDMEXUjtxIk7PwmjU+Q bCHPd8qVuB4Sp431pfWYnP9iJzWSA4LqUaYzcVcI4sasGT6tEtxTqrwfdEIgtBJW rwGhscGWLfKsEf1wwfrvBbU7IsS7UE8WgslW8E6GYHa47B0Bmnzg297vtVbMevgA 2V3vrW3bLdPyBRa3/fqVfCw+0qoszoBfi3vS9znj0sYLPmfvzNHNmWrQGPuKnpY2 4H5ZjS5BE1HR97h00qx7zSWkH85z5HmSpiGwRjZRimqiot4ppvDZvh2ZRl5Jcbmm H6qxqomV4kEi4Hya7EPcrhB3W1L5nmxtKVy7cQvaGg+dUZsGj7nXhJJjzcpySnme qqHvWVpURyYzMu8heAhrR97L9M+NpAB4Hn+mc9dMd94mtf6o9P+hRlmdpfOfXk+C /mk+Ox86gc/HbcwNJvQj2D744omzq5iRUcna2Q5JUDG/ksTh334= =HgCM -----END PGP SIGNATURE-----