-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Wed, 03 Dec 2025 01:54:50 -0500 Source: chromium Binary: chromium chromium-common chromium-common-dbgsym chromium-dbgsym chromium-driver chromium-headless-shell chromium-headless-shell-dbgsym chromium-sandbox chromium-sandbox-dbgsym chromium-shell chromium-shell-dbgsym Architecture: armhf Version: 143.0.7499.40-1~deb13u1 Distribution: trixie-security Urgency: high Maintainer: arm Build Daemon (arm-ubc-06) Changed-By: Andres Salomon Description: chromium - web browser chromium-common - web browser - common resources used by the chromium packages chromium-driver - web browser - WebDriver support chromium-headless-shell - web browser - old headless shell chromium-sandbox - web browser - setuid security sandbox for chromium chromium-shell - web browser - minimal shell Changes: chromium (143.0.7499.40-1~deb13u1) trixie-security; urgency=high . * New upstream stable release. - CVE-2025-13630: Type Confusion in V8. Reported by Shreyas Penkar (@streypaws). - CVE-2025-13631: Inappropriate implementation in Google Updater. Reported by Jota Domingos. - CVE-2025-13632: Inappropriate implementation in DevTools. Reported by Leandro Teles. - CVE-2025-13633: Use after free in Digital Credentials. Reported by Chrome. - CVE-2025-13634: Inappropriate implementation in Downloads. Reported by Eric Lawrence of Microsoft. - CVE-2025-13720: Bad cast in Loader. Reported by Chrome. - CVE-2025-13721: Race in v8. Reported by Chrome. - CVE-2025-13635: Inappropriate implementation in Downloads. Reported by Hafiizh. - CVE-2025-13636: Inappropriate implementation in Split View. Reported by Khalil Zhani. - CVE-2025-13637: Inappropriate implementation in Downloads. Reported by Hafiizh. - CVE-2025-13638: Use after free in Media Stream. Reported by sherkito. - CVE-2025-13639: Inappropriate implementation in WebRTC. Reported by Philipp Hancke. - CVE-2025-13640: Inappropriate implementation in Passwords. Reported by Anonymous. * d/patches: - fixes/headless-gn.patch: refresh. - fixes/chromium-142-iwyu-field-form-data.patch: drop, merged upstream. - disable/tests.patch: refresh. - ungoogled/disable-privacy-sandbox.patch: sync from upstream. - fixes/libpng-testonly.patch: add a workaround for a missing build target that upstream forgot to include. - trixie/rust-no-alloc-shim.patch: mark nightly feature 'no_mangle' as unsafe to make rustc happy. - trixie/cookie-string-view.patch: add a workaround for missing clang-19 feature. . [ Daniel Richard G. ] * d/patches: - debianization/cross-build.patch: Avoid "Assignment had no effect" error from GN when running outside of d/rules. - debianization/rustc-bootstrap.patch: Move RUSTC_BOOTSTRAP=1 here. - disable/license-headless-shell.patch: Don't generate the (unused) LICENSE.headless_shell file, as the rule tends to break easily. - fixes/headless-gn.patch: No longer needed, thanks to previous patch. - trixie/rust-is-multiple-of.patch: add more workarounds for missing rustc features. * d/rules: Move RUSTC_BOOTSTRAP=1 environment setting into patch. . [ Timothy Pearson ] * d/patches/ppc64le: - ppc64le/third_party/0002-regenerate-xnn-buildgn.patch: Regenerate from upstream sources - ppc64le/fixes/fix-clang-selection.patch: Refresh for upstream changes . [ Jianfeng Liu ] * Add loong64 support, with patches in d/patches/loongarch64/. Checksums-Sha1: fdbc145e30717faa3bd0641a0a343ba5aedc2824 5515668 chromium-common-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 431f086585fbe774c85aa03507b39d8f10298fe1 22633724 chromium-common_143.0.7499.40-1~deb13u1_armhf.deb 94e0309f098e40eb996e45d39fc84ea4c58adde5 33900084 chromium-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 42bac99276c676410008bada3aac01f41ae18d06 6964400 chromium-driver_143.0.7499.40-1~deb13u1_armhf.deb 0d89a4f7d27f68972abc712e6b6b62142465ef40 26573740 chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 2c3f71a7d91f0f18ae1188ba3de47d05bd27ff47 51643480 chromium-headless-shell_143.0.7499.40-1~deb13u1_armhf.deb 9a84ba3b3b23a29610509942fc678387e405a65e 19252 chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 9b0ef90ae9c37c88d098b533903d2340840d5360 106132 chromium-sandbox_143.0.7499.40-1~deb13u1_armhf.deb 44076c510c5b6dab4b3e1b3e97f1347c76cacd93 28859088 chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 8e304a6e025a9a9841ddeddd816578184974eac1 56442344 chromium-shell_143.0.7499.40-1~deb13u1_armhf.deb b824b736b8d775d5bd2a39ab9ab55daa5e2faf3b 30015 chromium_143.0.7499.40-1~deb13u1_armhf-buildd.buildinfo 740401a9f48d8257ed1a60fbe345d73171c58e29 67517664 chromium_143.0.7499.40-1~deb13u1_armhf.deb Checksums-Sha256: 21370452a2795f0e1aea6581cffdba8a75e42b0338e26fed5138d17d4e352d50 5515668 chromium-common-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 10cf181a565d1206113714c4c63e2b42be64e20fac501e0a29cb0ab5e480eeec 22633724 chromium-common_143.0.7499.40-1~deb13u1_armhf.deb f1706d1c56a8712e623e34749a0f57a4903f29836ab75846a61d25fa632b6ddc 33900084 chromium-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 279615c8111e815cecd18c78166cddefeee7821ba09a7ef93f19f1f339a2c35b 6964400 chromium-driver_143.0.7499.40-1~deb13u1_armhf.deb 04bd4491da691285567a11b7fff749c43df47d7a72c1ab589c2441ce8278169f 26573740 chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 2047bf7cb238dc425cb16b95b0847db4a1221cff131bbda5d42b283a95310ac8 51643480 chromium-headless-shell_143.0.7499.40-1~deb13u1_armhf.deb d82e56aa413e2cec2e13b85ec81bd24d227533fb0947dffb69195ea506d0143c 19252 chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 228a9034ceb97820ee611eb525fe91b919355c6ee608af18d3496b18bbc4904c 106132 chromium-sandbox_143.0.7499.40-1~deb13u1_armhf.deb f57b0fe3577794ad181b5d5caa7f571a53cb1a0c62206025406353826ed3ddf0 28859088 chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 73e9bfff133d7cb8bfd94d6bc042828032938ece45d6d8bb4a32cb88e83ad41b 56442344 chromium-shell_143.0.7499.40-1~deb13u1_armhf.deb 088c29a6307dc2907a3275d2093c1ccdf8127b5c37fa3274209e884e2f6996d1 30015 chromium_143.0.7499.40-1~deb13u1_armhf-buildd.buildinfo ec8a6e8be2d14b4ad841ca9cbc9b790a8062d87a2a4f4eb100d349098da42f21 67517664 chromium_143.0.7499.40-1~deb13u1_armhf.deb Files: 985b6ffe47f4233fc3bc652304ef616f 5515668 debug optional chromium-common-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb b05f2a57543c82e5a8ef7c90659bd4c6 22633724 web optional chromium-common_143.0.7499.40-1~deb13u1_armhf.deb 275b4f9440a694d4bd2683174a75e7fd 33900084 debug optional chromium-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 9ba721d942764ac2640aaf98a40328f2 6964400 web optional chromium-driver_143.0.7499.40-1~deb13u1_armhf.deb 4c83840aa2709019e527cac6d9c51434 26573740 debug optional chromium-headless-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 864e4120db3bd0eeebf705149c85beca 51643480 web optional chromium-headless-shell_143.0.7499.40-1~deb13u1_armhf.deb b42f88e6b978f5d40c6f10ae666329b4 19252 debug optional chromium-sandbox-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb 6b00700053bd9a04299254db78617c09 106132 web optional chromium-sandbox_143.0.7499.40-1~deb13u1_armhf.deb 06a5ca97018ea717b73487c5b418b1d7 28859088 debug optional chromium-shell-dbgsym_143.0.7499.40-1~deb13u1_armhf.deb f35b90804ea38f853ff366221b754ab0 56442344 web optional chromium-shell_143.0.7499.40-1~deb13u1_armhf.deb 1cf6706ddd6e8760bb396af092634a29 30015 web optional chromium_143.0.7499.40-1~deb13u1_armhf-buildd.buildinfo d92e862c8eec5360a978531f75c7c334 67517664 web optional chromium_143.0.7499.40-1~deb13u1_armhf.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEpxWVfktWxVoKRwGgJ7tNDw2WyRsFAmkw8R0ACgkQJ7tNDw2W yRtMZxAAg7U/q3S2UMh/LdXMhsDHr5/Vwj0d/YR0cUvRvvFcHyxM0fdVltpoJ+2H 5WhvkbPo3P35xO6cE7tWIHmcXDLYbvkT4MvJ0ED5Uk+xI2RAKng6sDAJ/2dMHA9v FYKfO+OoFXJxrrT8v/IdyHshv3VvLNcXgfwOBQEquv0H1gpXLMSM78ocIzzl5Fjf yJc2GI7F5baVTvBzxwcQ41YvOnb5q9xhbYp0+JcCmJYVdUYa2NNvoh5OvLsj8kKK wubj1N1Z1SMiIVCQapUoHXEDYKrntlpkMsOWJiXThMyJ7gY6H08yoD7YuDgwtOtW zdoVjGNP1zORVDJ9J38QWHsFvjYxd1EKI4HRiqGtNyks/yunTolA7gAP5OiJYfVF V3ZJ0WOcduABH7H5gM4Z2aT5Ex1PUQJLZ+6w4TKtofdGC86hquRpcyfA3HI4ECJ/ y5KY3tlF/ExYh5xO38FhUn01+XevP9qDeviXLZ9xI7FaaZLUYGhJ/ou5i93reKGR iH6/pL/CrNIhbumuyOY5cZAQIkixhlpyvrO4u1rtulBWc0HKPgoPRQPLTuHzThWP GHloZT3kY/Ojzz8gc2MwiryDrgMu8IOCAwMw3cdoHj2kNiBB3qoLAU4TeQ3E4caG sj0tBgCEqlCYqpZl3lvoGd2iB+j8ibnyVqEGR4kY1MlUewy3TNA= =1mZZ -----END PGP SIGNATURE-----