-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 06 May 2025 14:13:50 -0400 Source: chromium Architecture: source Version: 136.0.7103.92-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team Changed-By: Andres Salomon Changes: chromium (136.0.7103.92-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream security release. - CVE-2025-4372: Use after free in WebAudio. Reported by Huang Xilin of Ant Group Light-Year Security Lab. . [ Daniel Richard G. ] * d/patches/fixes/armhf-no-thumb.patch: Fix armhf FTBFS due to use of a Rust target (thumbv7neon) that Debian does not ship. Checksums-Sha1: 868e739a60afc058838fb6492f6e2111cfc0428e 3855 chromium_136.0.7103.92-1~deb12u1.dsc 55d811df0a3c8d149eb2a6c3fe04dee7874acf1b 938020928 chromium_136.0.7103.92.orig.tar.xz 2a45942fbaa861657746fa3ec406d4f5b6229742 8425164 chromium_136.0.7103.92-1~deb12u1.debian.tar.xz c6f61f0697ed744300f0e8d1620ab76a160ff560 26573 chromium_136.0.7103.92-1~deb12u1_source.buildinfo Checksums-Sha256: ab8ac5910b3a96d7650f5521f9577e80e2db86ea9d6b60f04a39d24805b6a5f1 3855 chromium_136.0.7103.92-1~deb12u1.dsc 9e7636b5b3c800efa22a3f6109d382094cb807324eb15bba1ffdfe59ec051b83 938020928 chromium_136.0.7103.92.orig.tar.xz 3a462fc177ca677f5b95f4af4f07be7aa36a99b49569cd4fa2c193c54a8feda0 8425164 chromium_136.0.7103.92-1~deb12u1.debian.tar.xz 99c117085e4197fbd46261d65c6d7424a695abd3ea697a5e68480d0ef503f9ec 26573 chromium_136.0.7103.92-1~deb12u1_source.buildinfo Files: 923dfb64014c4754dbda6bc949119185 3855 web optional chromium_136.0.7103.92-1~deb12u1.dsc 45ba5513c590d5b7b893a802a7cbb9a6 938020928 web optional chromium_136.0.7103.92.orig.tar.xz 0b7a1ef9a424807064c4596abda64c3a 8425164 web optional chromium_136.0.7103.92-1~deb12u1.debian.tar.xz acdbd173c9bfb09b6d44c4468e9865bc 26573 web optional chromium_136.0.7103.92-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmga6A4UHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudjd/sA//SDNr96qqkc/07CPu/eYCAUMI3C2H jHJT1/pgF3Ja2B4/AQ9uUcMw0Z/LNpoP1NChlcmuzwEbaxr4Vk+9dJuwCxSHMw35 lvtXW/WFxDiWyBgZlXrEWzH9Ezhh87CQ2/hx2DTLUF2C43+t22UeLBwGdvahwrif DXlK3N/PKbppBtk9GeOx6XX23ckpxdbbkToxhEUsicsfV4/TQz6Ucdcv83REZeqK XjKtlI1n8L2XsdRD5D+z9UKi9UrbnNg+ewiY0YUS8u4xhU9YKw0m3HRJtgLuXpEh 8pxTFsN2j6fMHm0cJugG4qHB9tdrdEZS2FrT9xl6DvI/Z0loXoMVkiKjoVh6/xih ZEpbYp7h/O0Z6P4zeJQNcTV0Qr75BRNLj/u4o8oanizO152UA0Yb5PICFxFB0WzO FdY84cCq7mSSs1QvMODtPb1cc5sulH7d8tH+/JuvXGCpLRNiqp3ZR2bVOlvnDxRo xAHpEpcr7yQYffA6C+3bM3hPvbX4C/e24lCpNndosyVsk3+NheIIpBJ5AeutbdXA hednLG+fOaslP+Js/ncrOylkkc3WgwgE26wlYySpH1rP2Qa8iiCWIe38UrSGzD0T beCAjAIt3hurTjkTAfi5zF2P07j2eqjJRsHPENw6u0PhwRBFM4NQeJsRHOlcvqTv fFJoOLMpBAN//Xk= =ChVb -----END PGP SIGNATURE-----