-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 01 Oct 2025 02:24:37 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-headless-shell chromium-headless-shell-dbgsym chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: arm64 Version: 141.0.7390.54-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-headless-shell - web browser - old headless shell chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (141.0.7390.54-1~deb12u1) bookworm-security; urgency=high . * New upstream stable release. - CVE-2025-11205: Heap buffer overflow in WebGPU. Reported by Atte Kettunen of OUSPG. - CVE-2025-11206: Heap buffer overflow in Video. Reported by Elias Hohl. - CVE-2025-11207: Side-channel information leakage in Storage. Reported by Alesandro Ortiz. - CVE-2025-11208: Inappropriate implementation in Media. Reported by Kevin Joensen. - CVE-2025-11209: Inappropriate implementation in Omnibox. Reported by Hafiizh. - CVE-2025-11210: Side-channel information leakage in Tab. Reported by Umar Farooq. - CVE-2025-11211: Out of bounds read in Media. Reported by Kosir Jakob. - CVE-2025-11212: Inappropriate implementation in Media. Reported by Ameen Basha M K. - CVE-2025-11213: Inappropriate implementation in Omnibox. Reported by Hafiizh. - CVE-2025-11215: Off by one error in V8. Reported by Google Big Sleep. - CVE-2025-11216: Inappropriate implementation in Storage. Reported by Farras Givari. - CVE-2025-11219: Use after free in V8. Reported by Google Big Sleep. * d/patches: - fixes/rust-clanglib.patch: refresh. - trixie/rust-no-alloc-shim.patch: refresh. - ungoogled/disable-privacy-sandbox.patch: update from ungoogled. - fixes/gentoo-stylesheet.patch: add patch from gentoo to fix build. - fixes/libcpp-headers.patch: add build fix for unbundling clang. * d/rules: set rtc_video_psnr=false for bookworm's older openh264. . [ Timothy Pearson ] * d/patches/ppc64le: - sandbox/0001-sandbox-Enable-seccomp_bpf-for-ppc64.patch: Refresh for upstream changes - fixes/fix-rustc.patch: Refresh for upstream changes Checksums-Sha1: 0c9acf7aa2eba1f9a83e961ddf604f878ca398b6 6165068 chromium-common-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb c634afef5244d81292f05ae97e874a3f775e8c58 27393684 chromium-common_141.0.7390.54-1~deb12u1_arm64.deb a71c5ae2f3e7330d26c706b0bce769c568476704 34271100 chromium-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb fd34cb6c07f3c6293bb6b774e9441d17ab27099e 6381120 chromium-driver_141.0.7390.54-1~deb12u1_arm64.deb 004122a67cfb7ca64922484717101e7fdd31bc19 27892316 chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 30d2b8905487fb06665a231c2e7b65967b8fce23 47902540 chromium-headless-shell_141.0.7390.54-1~deb12u1_arm64.deb dfda22ac3c277cfebb91a98c3813773dea306faf 20640 chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 306fdd9a2096721a780ab755aeefb5823789d181 107796 chromium-sandbox_141.0.7390.54-1~deb12u1_arm64.deb d086b08047dab6761f897eb7ae5838308cdb7f07 30047704 chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 50b0100b0943cf1d1fc092ef7c6e152690f9b18e 52088296 chromium-shell_141.0.7390.54-1~deb12u1_arm64.deb a939dd4867939d2619ea8b135525aa000da78b82 30281 chromium_141.0.7390.54-1~deb12u1_arm64-buildd.buildinfo c87db61c770afcdd5f956fc41ecfeb2658c33cbd 61269256 chromium_141.0.7390.54-1~deb12u1_arm64.deb Checksums-Sha256: 869ad4e5616d496ab6b9a22793ef9e65663e789d08ec74bf4af50da72748df69 6165068 chromium-common-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb e9c9162cfdd467d8d2c74c9b8bb7f5fb75f5c731681266563401ccd1fe95b967 27393684 chromium-common_141.0.7390.54-1~deb12u1_arm64.deb ce939a31032b483092c8208b4b4e4d93c1294ddb0ac8b91af9685b02501267f3 34271100 chromium-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 4b795bdb62531785287eb6ee42b8ddcf4f347add5dd5453c948fa29fbfa86144 6381120 chromium-driver_141.0.7390.54-1~deb12u1_arm64.deb 29a5dff907778eb8054d01bab3ecfa79ee22a015d170282ed96b9482a03733ff 27892316 chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 2b7e97e44ba0a9e882cf0009d11e1ed86f2832c7f61d0578c5d923f1049cf1b0 47902540 chromium-headless-shell_141.0.7390.54-1~deb12u1_arm64.deb ad70678dfe5b5cbae822af24a03ad6ed1fd91d93fb76ece041ca1bfbaa627bc1 20640 chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 408c348c4cccaa2ff4e3ff33ec64695dd246c57e3e1ded5cf9230aa2e8b69907 107796 chromium-sandbox_141.0.7390.54-1~deb12u1_arm64.deb 5489dd3fcd1740b8a7a0cea86c8d7aef40f9cd2e30cbedb8b72d0fd5b62e6de2 30047704 chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 631d70bf966a57f3dcc48fa5a32bfc215e293c6d0864b54b2a55212b60800fcf 52088296 chromium-shell_141.0.7390.54-1~deb12u1_arm64.deb bcdb7bdf1d1679bbdb6fc7165d10afdb74b610b01f347f7b9e7bdd917f7440ad 30281 chromium_141.0.7390.54-1~deb12u1_arm64-buildd.buildinfo f7bbfe36de3fbfdefe42acb9eeadb4dded6e44fc561c051a6b7e1e9fe42e4f35 61269256 chromium_141.0.7390.54-1~deb12u1_arm64.deb Files: 20eb2c3af8b413fedd2b05c434ed4aeb 6165068 debug optional chromium-common-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 808f31e138b59af2bd9b6c6f1b56522e 27393684 web optional chromium-common_141.0.7390.54-1~deb12u1_arm64.deb 9cfb1eb0ef55bbdd8b92e42eec22b2d2 34271100 debug optional chromium-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 5e3cdd96283aa9c9e1c946dadc14e537 6381120 web optional chromium-driver_141.0.7390.54-1~deb12u1_arm64.deb f0465eccb7b2074f6b0b46b6b497f754 27892316 debug optional chromium-headless-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb cb14680fe6cb93b929a48ad63f1e5453 47902540 web optional chromium-headless-shell_141.0.7390.54-1~deb12u1_arm64.deb b826908e1b67181aaa98ffd740d0235f 20640 debug optional chromium-sandbox-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 935591d905c4a1bfd7f773937e3ebb12 107796 web optional chromium-sandbox_141.0.7390.54-1~deb12u1_arm64.deb 7b8be36c57e09f5deab0272477aff526 30047704 debug optional chromium-shell-dbgsym_141.0.7390.54-1~deb12u1_arm64.deb 7962452f9fcbd22b815c2efcd52593f1 52088296 web optional chromium-shell_141.0.7390.54-1~deb12u1_arm64.deb 0f3452b68fa5624b8124e9f4666542c6 30281 web optional chromium_141.0.7390.54-1~deb12u1_arm64-buildd.buildinfo 1c7bd77fdf21e30168416a58ba033e85 61269256 web optional chromium_141.0.7390.54-1~deb12u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpxWVfktWxVoKRwGgJ7tNDw2WyRsFAmjhlBkACgkQJ7tNDw2W yRvIXg/+ItKrJFHw8PDwXoUSgcrmguQNbQZjbwm4zHvXk8i1jmE0dW7fIP7sdAt9 UN7iZ1uzn39TjbVXAT3sFh1n5wC+H9MjtlvpbMhSXqaw4AG9gR0svgz/oefeZpgi lEZdPW70Da2USH2Hkqm0g25wAKLPWKL4jkMi7Q1nayck9gIWM1ZmfWNGIUwpnQad beXZKpGMGb+f8XF9/52kj7aNwtSG4cScwkHIQmIxRJrOfxToo+7z6RYCzN4RP8oj nzsep+vRfpjoQ8VFUQyxKRUQMPSfCB6N7UK+0k7kq34dV2OYO6CPHP8yNcRn05HA 7gTrOC+ZuZnpgzXutj58D24qrSI11ymo9qT6h3ucHvSbnzvBlxHJzGhrm5gpAZDc 28aVA1EIrLxE52nIUzU6W3F6znDmc0RBLEVdOFH6DGJHGWC5JrbP1uh8YMBKL2E6 wGcTjQmX2cnvoCqatLgv1Qonhegs3qk45qVSYn35CsybbFkHrN4tAAoKNX8TEjco 11TQX4NsX774oEwYAEgNrlOqlql1nFPlSxu4RDlAc+Uj9T26kSVQLrU7b377KOL8 AUy6WpPMesXTg9DTbHojuJo1XR0PmeNSwi8rkSZHbIov5ksur/8qhidK9SORmyCU 3c7ePuJNqqFmxBqCBOx6xUNeqgQPWgNcg08GBlCZBlkgh7cOU+8= =SCxH -----END PGP SIGNATURE-----