-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 15 Jul 2025 15:35:02 -0400 Source: chromium Architecture: source Version: 138.0.7204.157-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team Changed-By: Andres Salomon Changes: chromium (138.0.7204.157-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream security release. - CVE-2025-7656: Integer overflow in V8. Reported by Shaheen Fazim. - CVE-2025-6558: Incorrect validation of untrusted input in ANGLE and GPU. Reported by Clément Lecigne and Vlad Stolyarov of Google's Threat Analysis Group. - CVE-2025-7657: Use after free in WebRTC. Reported by jakebiles. . [ Timothy Pearson ] * d/patches/ppc64le: - fixes/fix-page-allocator-overflow.patch: add to fix sporadic partition allocator failures on ppc64el systems. - third_party/use-sysconf-page-size-on-ppc64.patch: drop, no longer needed. Checksums-Sha1: 510fa9ce02a3494e234a9c8e7e2eaf7e30db0897 4057 chromium_138.0.7204.157-1~deb12u1.dsc 0a7cf58cb4ed8e7d48fba4d85a7e66d84d0385e4 965181128 chromium_138.0.7204.157.orig.tar.xz 97989a8328f0f5dfc98e02bd9c8f886f967e42cb 8489740 chromium_138.0.7204.157-1~deb12u1.debian.tar.xz 8a7fe7bf22fd6e4f68d58ce61a223dcf8705e755 26760 chromium_138.0.7204.157-1~deb12u1_source.buildinfo Checksums-Sha256: 5a9d693761bc6a33c85361df0185a2fc38c953492d2f730dbeb89078143d0ae3 4057 chromium_138.0.7204.157-1~deb12u1.dsc 2eab5f83809f7e830f1509c0f0ce31d2fa960df1b1d76f88f64be068e70cd19e 965181128 chromium_138.0.7204.157.orig.tar.xz d0a064a7c7ce3f873803978cf6b3f0d8cbe132e2a08444900464c8702979b325 8489740 chromium_138.0.7204.157-1~deb12u1.debian.tar.xz 9d03dff13206d1bd3acdf63a522d24190ab5726c0be69cf30bdebc0b3ed95937 26760 chromium_138.0.7204.157-1~deb12u1_source.buildinfo Files: 4f7fe7f2c35ec51ae0438a5d6097f4f4 4057 web optional chromium_138.0.7204.157-1~deb12u1.dsc 2cb3148e8bbd427940b2aed937ed21f6 965181128 web optional chromium_138.0.7204.157.orig.tar.xz 6668b9173f6acf13edd30e3a47c9bc6c 8489740 web optional chromium_138.0.7204.157-1~deb12u1.debian.tar.xz 8c1fc76d176b276496b848025cbfca4c 26760 web optional chromium_138.0.7204.157-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmh3w5kUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjdaSxAAmFhRo9pA+GQbHdm3JYaJQWKTJFEl 9NVqMssvEnvgmNJ8pJ5y50Om4EHGPVSXHk/1etxtCZhjO3R4aiej5dpMc9jtvQR3 BF0qTDXbONHdj2rUy+dBWQ/vTwBO4mu+Z5vi20V32mWQZtAKilX++EAZjeIs2vXf 7fT7MSCMLsoZEOK1kVXngLhjhdY7p69zQwZPCKxVEhBO184uqJ9g2vez0eid/DP3 bhjwh78rqQ8F+d4yubPUAemXIHleeCI4/FTgrvQ1bxJ9rO8tBlnv7gcXguDnaKSA SRUQ4Vu7tca5PHtSBSd/oZPFb2yomM3g+BKsxfJCd8Ja1+umZu3M74IfZ2gfhL2b AfVj4/kqMfy3zdpyGn0Zywtq6s24JuJfyzD8BH7IYQtUx4yRkJg4h1oYNV7dcXr7 NnKYC/6oR+9dXq+l0dDTwn4t51L1VWekxQ0cDDuU/7iB43t93MK1FGNohF6Q+Igq 4UxwEJp2a8bEKv2lE/Njq0/ve2UDrWXrQC2Z4M7pCNPV5zzV5pKiKPIxHwQ1daFp /sV4zqvKqHgDE3M17mCrPieeENVlgEVEPUstelp9NnDXSBu+s4bvF9piZmVp5Nds 5NaGC9EXuMwRqQT0F+rsE1zsPLTutqPpzXQCeuBCbKZqt32jkbDea36v68oTyVNx ItcRr/EGaDvE+x0= =S3z6 -----END PGP SIGNATURE-----