-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 01 Oct 2025 02:24:37 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-headless-shell chromium-headless-shell-dbgsym chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: armhf Version: 141.0.7390.54-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-conova-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-headless-shell - web browser - old headless shell chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (141.0.7390.54-1~deb12u1) bookworm-security; urgency=high . * New upstream stable release. - CVE-2025-11205: Heap buffer overflow in WebGPU. Reported by Atte Kettunen of OUSPG. - CVE-2025-11206: Heap buffer overflow in Video. Reported by Elias Hohl. - CVE-2025-11207: Side-channel information leakage in Storage. Reported by Alesandro Ortiz. - CVE-2025-11208: Inappropriate implementation in Media. Reported by Kevin Joensen. - CVE-2025-11209: Inappropriate implementation in Omnibox. Reported by Hafiizh. - CVE-2025-11210: Side-channel information leakage in Tab. Reported by Umar Farooq. - CVE-2025-11211: Out of bounds read in Media. Reported by Kosir Jakob. - CVE-2025-11212: Inappropriate implementation in Media. Reported by Ameen Basha M K. - CVE-2025-11213: Inappropriate implementation in Omnibox. Reported by Hafiizh. - CVE-2025-11215: Off by one error in V8. Reported by Google Big Sleep. - CVE-2025-11216: Inappropriate implementation in Storage. Reported by Farras Givari. - CVE-2025-11219: Use after free in V8. Reported by Google Big Sleep. * d/patches: - fixes/rust-clanglib.patch: refresh. - trixie/rust-no-alloc-shim.patch: refresh. - ungoogled/disable-privacy-sandbox.patch: update from ungoogled. - fixes/gentoo-stylesheet.patch: add patch from gentoo to fix build. - fixes/libcpp-headers.patch: add build fix for unbundling clang. * d/rules: set rtc_video_psnr=false for bookworm's older openh264. . [ Timothy Pearson ] * d/patches/ppc64le: - sandbox/0001-sandbox-Enable-seccomp_bpf-for-ppc64.patch: Refresh for upstream changes - fixes/fix-rustc.patch: Refresh for upstream changes Checksums-Sha1: 1a013e60c7a04e61368ec0e1ab8451bc80907880 5511088 chromium-common-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 06f4b270387e7eedb36f99e95b6c3a80916450d7 22312812 chromium-common_141.0.7390.54-1~deb12u1_armhf.deb 1abe659fb76cc4624b25548c058426461e156dbb 33306104 chromium-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb d15c74caaad462bfd9f75ed9ef0db4ce72485317 6795728 chromium-driver_141.0.7390.54-1~deb12u1_armhf.deb 68ebea54d25fbfa7c2a611d4021afd64b4582ed2 26249108 chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 5fc04137f9be752b797fcf9a1a7941ac68ea1b86 51113472 chromium-headless-shell_141.0.7390.54-1~deb12u1_armhf.deb 21dbafdb4d5b38f8f581655fb5cae133004cbb48 18036 chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb f69331fd4a955b08367fe8860b4cb6fa5da0ed5a 106656 chromium-sandbox_141.0.7390.54-1~deb12u1_armhf.deb f7f47d5ebcbc3d367d3fcfac579544dfd0b8b389 28421444 chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 16a920aee3a1789cf919769c91a172de17ebcec0 55715516 chromium-shell_141.0.7390.54-1~deb12u1_armhf.deb 36e4160c1cb01cd4515a950031603ad54912ac34 30191 chromium_141.0.7390.54-1~deb12u1_armhf-buildd.buildinfo c6b99b16cc383e66910dc238fef8b7c3c7305ff8 66505692 chromium_141.0.7390.54-1~deb12u1_armhf.deb Checksums-Sha256: 4a8450ff91bdd22c55a95c752938de1db347f10416cb3929d6e8ee7cd2335739 5511088 chromium-common-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 778d5f0df7c6e629762de9741d6dab3685c75be65c9752c310d1782b732ce88f 22312812 chromium-common_141.0.7390.54-1~deb12u1_armhf.deb dd3c13e1b093a7a07d8e96f4ea92085463e3da3091933c9dc26ac832fb8862ad 33306104 chromium-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 015c8403e83eaf1f89a570b7cbf4fdba485ff949470533296e644f6bd6ec0ed1 6795728 chromium-driver_141.0.7390.54-1~deb12u1_armhf.deb 7301aa61ad86ff321061301d71d3cfb945bd7a159c00270c6cf66c8f8f653fbb 26249108 chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb ffef26827e5dab92c290d1d0f7671ac00d302e82e0a761cd8b92c947e3211cdc 51113472 chromium-headless-shell_141.0.7390.54-1~deb12u1_armhf.deb 570dec2e83f253eca80b4286d38351ed6acc8689429ae4eaca0fe213fe27560c 18036 chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb ad8065c729de4621ef9c9fd2e24cf3039d50efb5b77e654c6c5913b3f825f371 106656 chromium-sandbox_141.0.7390.54-1~deb12u1_armhf.deb 4681e086d72e2deb0724cc7e5aa45913c961336e5d18ecc40e5daa2f6b240bb9 28421444 chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 266599ced25a27798acab1f11a8ac3c6aba8b4fec8c0b894abce9956cbdf493c 55715516 chromium-shell_141.0.7390.54-1~deb12u1_armhf.deb e773fa6e7c28c13c5e4af8f2122926cccde27638d5237f99935281b3898630b3 30191 chromium_141.0.7390.54-1~deb12u1_armhf-buildd.buildinfo a01f8816240971a4cd5d3e8e2653427449c2a8fd6cb48395acc489c486d0c485 66505692 chromium_141.0.7390.54-1~deb12u1_armhf.deb Files: faa5aae1d00db2c07d34b13bd28966ad 5511088 debug optional chromium-common-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 94876248f2988175f7c03097dbe2a48d 22312812 web optional chromium-common_141.0.7390.54-1~deb12u1_armhf.deb c667bdccf8cbbcfa60c90aec1048b91e 33306104 debug optional chromium-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 098c426dbb62bd0b0663b3e7bd6a6b80 6795728 web optional chromium-driver_141.0.7390.54-1~deb12u1_armhf.deb fb1f8e9cef33ab5339427890bf081b8f 26249108 debug optional chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 19566444c44e451ef7301a35d699a1c9 51113472 web optional chromium-headless-shell_141.0.7390.54-1~deb12u1_armhf.deb 78124210da675e28c12bd9226ecb5788 18036 debug optional chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 962976f68fbd52c4646abda05e099ee7 106656 web optional chromium-sandbox_141.0.7390.54-1~deb12u1_armhf.deb 9a67bc8bc2ee55e6a4ffcc2f06bc4ff0 28421444 debug optional chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_armhf.deb 3b9511ebc2776b5ca16f2e8ffb4b32e8 55715516 web optional chromium-shell_141.0.7390.54-1~deb12u1_armhf.deb a8a199ced875c65ee63c96c470121209 30191 web optional chromium_141.0.7390.54-1~deb12u1_armhf-buildd.buildinfo 5158b9a822a208d282d5100d2699714e 66505692 web optional chromium_141.0.7390.54-1~deb12u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEegRwmIwj8f99iF4m4CwlMGxHD8UFAmjefYAACgkQ4CwlMGxH D8XH3g//YBcjJbp9XkWyNdsXVRMiY8umg8EfQt6BtmdkZ/3d9AzkiWrEBOeX4foQ vvF3gW0kL6IUX/xCw18acCpY1rF15MQm38UJLPgXqo6fNIZaaPQwoEbDwiytXAnN jvLA8E4GWYrw/dl3oxQvpaLESIyIom3rBU0Z3Yic9HXlYYtcFMDayL3WQwlSkOsT LRfYCr6lU95rMNgY/kekWZH47oGbqKjRhenBLHuzZJ1olIM26Zm7XDfXXbifw8GF Sf5wiu+r1ygp1VlGE74OLdzRbOQUmRYWLNkz+APYr+9HxDdm/GRfyHBIJMcXCz9t h7sPCZYH5WXf/CW/oyWmfLK/hrA9QAY7CYK4wC31ypyIumxmxYykAjqz/RHdalSV wyKwGro2LF3Esg2EG5s4GUDON8FHh/D/G5VHa5olA0eDOYBAoyQ/hdwtHT8Wd22j ozLN1SxHdE3cu48lFOAf4jMqSVd8Gsb9lsXTi3WTgA15kYLXFjQJIXLBxDe5Queq uMBaYiqD18Aq/GXUuH8aZjoDMNTxq5aq1Nb0Vk92aPMeaAZU/mMnuDOUNIf7/ps4 vKnwsEgzT2udg85GPUwPBXjWbV1VPt1ZiKDDbtInMG+2ZroWk2NCJpGXi3elkhgd ay89aVKYDiFbZTa/xuN1ARJnpaJuLSXOvaLbwI1yl/9VuemfqCM= =5drh -----END PGP SIGNATURE-----