-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Thu, 04 Sep 2025 16:47:14 -0400 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-headless-shell chromium-headless-shell-dbgsym chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: amd64 Version: 140.0.7339.80-1~deb12u1 Distribution: bookworm-security Urgency: medium Maintainer: amd64 / i386 Build Daemon (x86-ubc-02) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-headless-shell - web browser - old headless shell chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (140.0.7339.80-1~deb12u1) bookworm-security; urgency=medium . * New upstream stable release. - CVE-2025-9864: Use after free in V8. Reported by Pavel Kuzmin of Yandex Security Team. - CVE-2025-9865: Inappropriate implementation in Toolbar. Reported by Khalil Zhani. - CVE-2025-9866: Inappropriate implementation in Extensions. Reported by NDevTK. - CVE-2025-9867: Inappropriate implementation in Downloads. Reported by Farras Givari. * d/patches: - fixes/armhf-icf.patch: refresh. - disable/tests.patch: refresh. - disable/catapult.patch: refresh. - disable/widevine-cdm-cu.patch: refresh (and make it shorter). - bookworm/clang19.patch: refresh. - disable/android.patch: delete a new reference to chrome/android/. - disable/buildtools-libc.patch: drop due to upstream cleanups. - trixie/rust-no-alloc-shim.patch: add a build fix for older rustc. - bookworm/rust-visibility.patch: drop, not needed w/ new rust 1.85. - bookworm/crabbyav1f.patch: drop, not needed w/ new rust 1.85. - bookworm/toktrie-utf8chunks.patch: drop, not needed w/ new rust. - bookworm/derivre-create.patch: drop, not needed w/ new rust. - bookworm/rust-split-at-checked.patch: drop, not needed w/ new rust. - bookworm/crabbyav1f-macro-scope.patch: drop, not needed w/ new rust. - bookworm/rust-box-to-vec.patch: drop, not needed w/ new rust. . [ Timothy Pearson ] * d/patches/ppc64le: - third_party/0002-regenerate-xnn-buildgn.patch: Refresh for upstream changes - fixes/fix-study-crash.patch: Refresh for upstream changes - core/add-ppc64-architecture-to-extensions.diff: Refresh for upstream changes - fixes/fix-unknown-warning-option-messages.diff: Refresh for upstream changes - libaom/0001-Add-pregenerated-config-for-libaom-on-ppc64.patch: Regenerate from new upstream version - third_party/0003-third_party-ffmpeg-Add-ppc64-generated-config.patch: Regenerate from new upstream version Checksums-Sha1: d90a77d06a923a961d55bba34a5a0e3b9fc5cb3f 5283812 chromium-common-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 58b24cd1980898d61539f5c537ae84e20cd4ef0c 22313920 chromium-common_140.0.7339.80-1~deb12u1_amd64.deb 0a9ecbebee34a913d56b24081f1068f73677c89e 33454628 chromium-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 74a2384d73f923f884bc09a2baf95c049bc92676 7628132 chromium-driver_140.0.7339.80-1~deb12u1_amd64.deb e769de501718c5e3722dbd7fd5bc0daafeba0a29 27799660 chromium-headless-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb d5a3913471ab9748551478283236597aab0cc1fb 54479032 chromium-headless-shell_140.0.7339.80-1~deb12u1_amd64.deb e161b9b6c688d26d8ebc60a9428cbc4baf8ec86e 19376 chromium-sandbox-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 4fadc09febcac84c5079b24d51a26f68f669f055 106596 chromium-sandbox_140.0.7339.80-1~deb12u1_amd64.deb e7dfec8ac5f4ab72d3aef66381164ac086c1117d 29913932 chromium-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 977bbd465c271d59ae534986a48ec1230fe3087f 59145392 chromium-shell_140.0.7339.80-1~deb12u1_amd64.deb 29d61a49d162f29d335ae74a854922ae5b9fd507 30294 chromium_140.0.7339.80-1~deb12u1_amd64-buildd.buildinfo c059d756581df95148733153df5f364fb006d218 70430680 chromium_140.0.7339.80-1~deb12u1_amd64.deb Checksums-Sha256: c7f60775e63d3879e5f5471aa95b3782f7ab1929c3e2bbd9c2f128e0614d7653 5283812 chromium-common-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb e1380d8042a47ce2f513ade7b5d9a97174d909c843dafa3ceba045f2498a551b 22313920 chromium-common_140.0.7339.80-1~deb12u1_amd64.deb 9c343cd6240cebbe415925d527df209249dba094e47c00088737f486413f3439 33454628 chromium-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 36dec40f802fb3476755be50497625ddfe221c35d3fcbe50f101e38b8f6450ff 7628132 chromium-driver_140.0.7339.80-1~deb12u1_amd64.deb 66bc1fc0a261edfae2832a71493ff16c9f84cb0cf07c49d2555e1492f7e3b1fb 27799660 chromium-headless-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 492eca54ba328c458222fff4abeab945fd65270e74cc12ed4378e402b903e3a3 54479032 chromium-headless-shell_140.0.7339.80-1~deb12u1_amd64.deb 6677958d7d757cc4d7b235b0ff8ec6dd192e399ab3f3a0a6422438d00f99da0c 19376 chromium-sandbox-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 6852e6ef3080f58b486715a2aa69fddba7cd434e73fd5b7edeb2200d452be3f2 106596 chromium-sandbox_140.0.7339.80-1~deb12u1_amd64.deb 95b054cc5bdde1add85e4d2bfa5c8d6fac2c296a413394b7abc745dee57b9211 29913932 chromium-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 6a2a63af9a9fc824703e0af7eef8a995f79f96648f81f26ad79cdcb6ff4d2fcf 59145392 chromium-shell_140.0.7339.80-1~deb12u1_amd64.deb 5ef424499ef302896beb954b3349530e336c2e99d0d0c1d40bc768b3c267d016 30294 chromium_140.0.7339.80-1~deb12u1_amd64-buildd.buildinfo 158c3a86f40ad7d0ec0e0c14cd6b1faa8656f4071272324f151e14baae557c50 70430680 chromium_140.0.7339.80-1~deb12u1_amd64.deb Files: 8bc1d86b3d89df080d5976af339c523f 5283812 debug optional chromium-common-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 13e2a88b1198da88af871f9ba94af2f2 22313920 web optional chromium-common_140.0.7339.80-1~deb12u1_amd64.deb 1a07ff548e306308bf844833e4c74681 33454628 debug optional chromium-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb ca91ed76d1c4c16d2525ada76e8c2358 7628132 web optional chromium-driver_140.0.7339.80-1~deb12u1_amd64.deb 5058137958e2596517a4913d09b09ae1 27799660 debug optional chromium-headless-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb ea245ea4b221bed4cae5c861840bfc52 54479032 web optional chromium-headless-shell_140.0.7339.80-1~deb12u1_amd64.deb 511bb156b9fe98172b735bd4773bea14 19376 debug optional chromium-sandbox-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb d99686a5eccf9060cf564f8f563e6eb8 106596 web optional chromium-sandbox_140.0.7339.80-1~deb12u1_amd64.deb 446e398a62d259a8f8e3161a0b36c74a 29913932 debug optional chromium-shell-dbgsym_140.0.7339.80-1~deb12u1_amd64.deb 981b5df38f007724e969451255270d3e 59145392 web optional chromium-shell_140.0.7339.80-1~deb12u1_amd64.deb 04d46f84eb5e6900806e6deb61d3828c 30294 web optional chromium_140.0.7339.80-1~deb12u1_amd64-buildd.buildinfo 813db8e373e9016e1bb3ef2bb1d1aed1 70430680 web optional chromium_140.0.7339.80-1~deb12u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEc5vuvf2HND40bnI+8IREj/cRiTMFAmi6vxQACgkQ8IREj/cR iTMQDg/7BQ+M48A2AosyylIssIkx3IWsz6CGuRAcu/DrkDxgOdAYDrwz8Is5gvUk M62Zg+rWGGieJ8oLzZv7B+uYtDB27Zk3rfbF2ux1ePtNU90OXMN4Y6pGex5f4mEf +RUJLQI3Hj4dhUEjwloZXMvmxvPtwsZCmBTOfNKbvhRs2BIxE986bb84xEWvRY9v gBTL7xIhLBjp719HxgUP2mZvcooue/KHhWXWctlTn05TobsfgPdXSw52wRxQ9sqP jUY8CEXclgKOo2/nqM9Y/eLfpNwwzSvo1CSxsEGCD9TInUkMPdr9MEZwxeuB8hrE iScdB5Iu9KhwLqbd+UXr8wFPoanpJjLSJF52aRbo3H8F+KH+BczRhEV9K/0R+V5u k8s0CRR8RyqjjSDwMWjUv0dl/GRja5XLC5U3+jXBf3tWexVoWVOwojOOv02ti4R8 tD3eRxwe6ay6hIFY7rjoGXi6Pbc4YyRcyk9TzQNPsY5XE+XBTgodO93kUIa7XMuX FNCFnNyVqv1d/1rxUELPJTNgqJBjTiO2ecvdopcjFFNYrbCb3lilq5o1hD/YRx56 kOsNetr+6umdGPjG5402ST6urp7nhcf5mxcezVFPTF77YWFHVEqO3HBSjSfDMBnc lGXuRSg3oEqk3CS4xLQrY0yh1HOuWadjw+MhgpUoj4P9lyYCU9k= =1d6Q -----END PGP SIGNATURE-----