-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 03 Dec 2025 01:54:50 -0500 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-headless-shell chromium-headless-shell-dbgsym chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: amd64 Version: 143.0.7499.40-1~deb13u1 Distribution: trixie-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-headless-shell - web browser - old headless shell chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (143.0.7499.40-1~deb13u1) trixie-security; urgency=high . * New upstream stable release. - CVE-2025-13630: Type Confusion in V8. Reported by Shreyas Penkar (@streypaws). - CVE-2025-13631: Inappropriate implementation in Google Updater. Reported by Jota Domingos. - CVE-2025-13632: Inappropriate implementation in DevTools. Reported by Leandro Teles. - CVE-2025-13633: Use after free in Digital Credentials. Reported by Chrome. - CVE-2025-13634: Inappropriate implementation in Downloads. Reported by Eric Lawrence of Microsoft. - CVE-2025-13720: Bad cast in Loader. Reported by Chrome. - CVE-2025-13721: Race in v8. Reported by Chrome. - CVE-2025-13635: Inappropriate implementation in Downloads. Reported by Hafiizh. - CVE-2025-13636: Inappropriate implementation in Split View. Reported by Khalil Zhani. - CVE-2025-13637: Inappropriate implementation in Downloads. Reported by Hafiizh. - CVE-2025-13638: Use after free in Media Stream. Reported by sherkito. - CVE-2025-13639: Inappropriate implementation in WebRTC. Reported by Philipp Hancke. - CVE-2025-13640: Inappropriate implementation in Passwords. Reported by Anonymous. * d/patches: - fixes/headless-gn.patch: refresh. - fixes/chromium-142-iwyu-field-form-data.patch: drop, merged upstream. - disable/tests.patch: refresh. - ungoogled/disable-privacy-sandbox.patch: sync from upstream. - fixes/libpng-testonly.patch: add a workaround for a missing build target that upstream forgot to include. - trixie/rust-no-alloc-shim.patch: mark nightly feature 'no_mangle' as unsafe to make rustc happy. - trixie/cookie-string-view.patch: add a workaround for missing clang-19 feature. . [ Daniel Richard G. ] * d/patches: - debianization/cross-build.patch: Avoid "Assignment had no effect" error from GN when running outside of d/rules. - debianization/rustc-bootstrap.patch: Move RUSTC_BOOTSTRAP=1 here. - disable/license-headless-shell.patch: Don't generate the (unused) LICENSE.headless_shell file, as the rule tends to break easily. - fixes/headless-gn.patch: No longer needed, thanks to previous patch. - trixie/rust-is-multiple-of.patch: add more workarounds for missing rustc features. * d/rules: Move RUSTC_BOOTSTRAP=1 environment setting into patch. . [ Timothy Pearson ] * d/patches/ppc64le: - ppc64le/third_party/0002-regenerate-xnn-buildgn.patch: Regenerate from upstream sources - ppc64le/fixes/fix-clang-selection.patch: Refresh for upstream changes . [ Jianfeng Liu ] * Add loong64 support, with patches in d/patches/loongarch64/. Checksums-Sha1: 65acbe95938572b720396baf67a37f5dc4a0836e 5066816 chromium-common-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 130406a07147dd793711c781dd2d43574873d482 22683204 chromium-common_143.0.7499.40-1~deb13u1_amd64.deb 7d4b23fb044e38043ee00bc9ef725ff93ee86a58 31743672 chromium-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb fdeed999755a3bd3c6d25f676525f0de060fdf1f 7182840 chromium-driver_143.0.7499.40-1~deb13u1_amd64.deb 7c71869379507da8ee525b45ec0663cec4939ab9 26960472 chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 9bb0605b9d1659265155a798015b52361e74025f 59644276 chromium-headless-shell_143.0.7499.40-1~deb13u1_amd64.deb eb34faba9e14673503152a6825a1a55a1bfa2ad0 20220 chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 10d3376d4b0781d2c703490bdedd2cf44fbf34f8 106480 chromium-sandbox_143.0.7499.40-1~deb13u1_amd64.deb ef5d5686a5c3d7302676762f69dbe9ac16227708 28578608 chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb b42f7bb355b8adb9ded1da0f3b9a4a64b577dd4a 58695472 chromium-shell_143.0.7499.40-1~deb13u1_amd64.deb 2f166af8cd50654ee250afb41fd08547247f7d93 30132 chromium_143.0.7499.40-1~deb13u1_amd64-buildd.buildinfo b6ea1fe014709c408a9990c3d87eb075b08fd3d9 80238584 chromium_143.0.7499.40-1~deb13u1_amd64.deb Checksums-Sha256: 72bc555385e42c5f04bef29a51dd5dd7694624a1e4e307f66555d80f64666031 5066816 chromium-common-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 7d04009c7b087a7fafb0735366994b81d63a52960492c2f590a3a0dd3fec284f 22683204 chromium-common_143.0.7499.40-1~deb13u1_amd64.deb eb3e918fa32879fba1a8f9ecd9e1602d0675f83de374afec36e437951e6f68fd 31743672 chromium-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 02e1154ee43783a80f138919d7186d616e1d7b55af3617e64c6f6891fcab29ee 7182840 chromium-driver_143.0.7499.40-1~deb13u1_amd64.deb 4e4fe184294237d34b936c8817b68bfc43d9abae0ff2b75071a968bcfb2124af 26960472 chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 173fc755515035b095f66714fdabaa2b1b70eef2006f5216a34f6d451cc6cf01 59644276 chromium-headless-shell_143.0.7499.40-1~deb13u1_amd64.deb c5a95b01be569a14dfd83f1f35d2bfeac10ac8d32e83ea3b2a96204b5e752726 20220 chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 932c38f965194c058f234b80d2619bde55f39d9cb09acf1df10bd6f46880151b 106480 chromium-sandbox_143.0.7499.40-1~deb13u1_amd64.deb b05eadb8e39d80360c0b0e485e6cafecac01e921e08d92d52aff23a817217834 28578608 chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 3cdb52a48baf06f85cf03b9a6ea526d1e1e114bc772466ba8c5aa13a57c37cd6 58695472 chromium-shell_143.0.7499.40-1~deb13u1_amd64.deb cf2baab00c8f231b78e4633fd330f8cad6ae5abcd2c5c24325e7da10f0543ec7 30132 chromium_143.0.7499.40-1~deb13u1_amd64-buildd.buildinfo e2ee355a9f5e374c7cf43ff564edec22e7048f83666076e65260173fe8024e43 80238584 chromium_143.0.7499.40-1~deb13u1_amd64.deb Files: 0d564d32e8076a46c9d1f3ab19290b7f 5066816 debug optional chromium-common-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb bbd03a6c7b1dde0b78f40d361dd35d10 22683204 web optional chromium-common_143.0.7499.40-1~deb13u1_amd64.deb 3dafffa9027af5523b9079590684392e 31743672 debug optional chromium-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 4d70e0e9f916454d62fcf472227fc7b1 7182840 web optional chromium-driver_143.0.7499.40-1~deb13u1_amd64.deb 6a1d93160a6dc7968fff1b5ca4a0abc9 26960472 debug optional chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 48156bba76badc355f8f6ce3fb92ba0d 59644276 web optional chromium-headless-shell_143.0.7499.40-1~deb13u1_amd64.deb 652dabe91809c2d54e44410bab8c1cb2 20220 debug optional chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb 95f14575b4151f737ecfe83efa4fd4ff 106480 web optional chromium-sandbox_143.0.7499.40-1~deb13u1_amd64.deb 54975249ba15107e940a15dd21244fa0 28578608 debug optional chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_amd64.deb de0e04ec4f2adf4a85f4cabdd7ef7e72 58695472 web optional chromium-shell_143.0.7499.40-1~deb13u1_amd64.deb 09e9e7198679d01193c391d7eacaa14e 30132 web optional chromium_143.0.7499.40-1~deb13u1_amd64-buildd.buildinfo 64b70a2566a22708c355588c45f4a457 80238584 web optional chromium_143.0.7499.40-1~deb13u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEaPzFtKPtF0JrKPV5iZlfn74WV6kFAmkw2iMACgkQiZlfn74W V6kgUg/9FDPQy4b0OWwD6GgN/pE0XA/+DND48vLwh4bxkVL9PKX2nLyfeAPQ3JHa 9hml8GCYC32hQIjx4DT7WAJTRJ16QvxHX14mTqjbT4cVOXAp98axESUfdWRoxk3g 7dbb8MrmEbFJs4kg/Fn2XlbPKt7LiuzU0huo3kyCpo9wZ3PK2hLz6pIxFanCG7WU Zb4D5ZmVqTcQ/7s0BlW6FuTRycltXdLe4OyjqcvpkmTr2v7vl+W4w2EQBTIulzlY Xc+q981XCcRverS+O5MUz/WDALgt/1UcFGlMmu/w6Rr3EkI9HYJHpc6udycksAwU /pOcc2jqvc+MEITTQJ2ylp0NrsqIiURQSzD0GR+MlZq3x/BzTkJjSQVbILT4ydXP uxc7fZTOgB+l25VyOgvTdIhkMt6uwKpbZosH6wd9hu4PK3gz2CV7iwktoGsiBrZp NAdkPbWd2+UQCku/qZKPvx72Z6vX3KcVSseU1kz3FvghPSNPGjoYV0m8oSuFLjoL GVS00PHaQ1bS5pHAhDx4LZVgCoR56NjZ+Jyds+n3NQ+I3FOXepgaWbqGkYyd+X8O AQWbVrk2NkZC2QAObwSd7qbpgIR7+JHDWPAN1UkFEiwAmcDzscijT/OCAryfXemx 68KGe7qNzXuaGna7sPlb2L3ZsgWrXbg4wqa7lvhXa+7gKJD23/A= =i592 -----END PGP SIGNATURE-----