chromium-browser 62.0.3202.62-0ubuntu0.14.04.1204 source package in Ubuntu

Changelog

chromium-browser (62.0.3202.62-0ubuntu0.14.04.1204) trusty; urgency=medium

  * Upstream release: 62.0.3202.62
    - CVE-2017-5124: UXSS with MHTML.
    - CVE-2017-5125: Heap overflow in Skia.
    - CVE-2017-5126: Use after free in PDFium.
    - CVE-2017-5127: Use after free in PDFium.
    - CVE-2017-5128: Heap overflow in WebGL.
    - CVE-2017-5129: Use after free in WebAudio.
    - CVE-2017-5132: Incorrect stack manipulation in WebAssembly.
    - CVE-2017-5130: Heap overflow in libxml2.
    - CVE-2017-5131: Out of bounds write in Skia.
    - CVE-2017-5133: Out of bounds write in Skia.
    - CVE-2017-15386: UI spoofing in Blink.
    - CVE-2017-15387: Content security bypass.
    - CVE-2017-15388: Out of bounds read in Skia.
    - CVE-2017-15389: URL spoofing in OmniBox.
    - CVE-2017-15390: URL spoofing in OmniBox.
    - CVE-2017-15391: Extension limitation bypass in Extensions.
    - CVE-2017-15392: Incorrect registry key handling in PlatformIntegration.
    - CVE-2017-15393: Referrer leak in Devtools.
    - CVE-2017-15394: URL spoofing in extensions UI.
    - CVE-2017-15395: Null pointer dereference in ImageCapture.
  * debian/control:
    - build with clang 4.0
    - bump Standards-Version to 4.1.0
  * debian/rules:
    - build with clang 4.0
    - also build gn with clang 4.0
    - do not disable swiftshader on i386 (LP: #1697496)
    - when building on armhf, pass symbol_level=0 to gn in the hope that
      Launchpad builders won't run out of memory when linking
  * debian/patches/additional-search-engines.patch: refreshed
  * debian/patches/allow-component-build: removed, unused
  * debian/patches/arm64-vpx-alignment: removed, no longer needed
  * debian/patches/c++-compatibility.patch: added
  * debian/patches/defang-ct-timebomb: removed, unused
  * debian/patches/disable-sse2: refreshed
  * debian/patches/enable-chromecast-by-default.patch: refreshed
  * debian/patches/fix-argument-evaluation-order.patch: removed, no longer
    needed
  * debian/patches/fix-compilation-for-atk.patch: removed, no longer needed
  * debian/patches/fix-compilation-for-atk-version-check.patch: removed, no
    longer needed
  * debian/patches/fix-gn-bootstrap.patch: updated
  * debian/patches/fix_building_widevinecdm_with_chromium.patch: refreshed
  * debian/patches/gcc-compilation-fixes.patch: removed, no longer needed
  * debian/patches/make-base-numerics-build-with-gcc.patch: removed, no longer
    needed
  * debian/patches/no-new-ninja-flag.patch: added
  * debian/patches/protobuf-fullness: removed, unused
  * debian/patches/really-disable-swiftshader-on-x86.patch: removed, no longer
    needed
  * debian/patches/reduce-ld-memory-usage.patch: removed, no longer needed
  * debian/patches/revert-clang-nostdlib++.patch: added
  * debian/patches/revert-llvm-ar.patch: removed, no longer needed
  * debian/patches/search-credit.patch: refreshed
  * debian/patches/set-rpath-on-chromium-executables.patch: refreshed
  * debian/patches/suppress-newer-clang-warning-flags.patch: added
  * debian/patches/title-bar-default-system.patch-v35: refreshed
  * debian/patches/use-clang-versioned.patch: added
  * debian/patches/use-gcc-versioned: removed, no longer needed
  * debian/patches/vulkan-c99.patch: removed, no longer needed
  * debian/patches/widevine-other-locations: refreshed
  * debian/known_gyp_flags: removed, unused
  * debian/known_gn_gen_args-[i386,amd64,armhf]: added

 -- Olivier Tilloy <email address hidden>  Thu, 19 Oct 2017 11:07:58 +0200

Upload details

Uploaded by:
Olivier Tilloy on 2017-10-19
Uploaded to:
Trusty
Original maintainer:
Ubuntu Developers
Architectures:
i386 amd64 armhf all
Section:
web
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
chromium-browser_62.0.3202.62.orig.tar.xz 493.2 MiB e8df3150386729ddcb4971636627e54815ad447be5f122201e310f5bb0bcc362
chromium-browser_62.0.3202.62-0ubuntu0.14.04.1204.debian.tar.xz 515.0 KiB 8fd0b8729264872ba76e2b65bd4f0336fc008e1d2f2346b8b3fe34c447919833
chromium-browser_62.0.3202.62-0ubuntu0.14.04.1204.dsc 2.6 KiB 1458b8cc50968e1d60dc892d77fd190c10af70768926cac79fe34b39d4fbb330

View changes file

Binary packages built by this source

chromium-browser: Chromium web browser, open-source version of Chrome

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.

chromium-browser-dbgsym: debug symbols for package chromium-browser

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.

chromium-browser-l10n: chromium-browser language packages

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.
 .
 This package contains language packages for 65 languages:
 am, ar, ast, bg, bn, bs, ca, ca@valencia, cs, da, de, el, en-AU, en-GB, eo,
 es-419, es, et, eu, fa, fil, fi, fr, gl, gu, he, hi, hr, hu, hy, ia, id, it,
 ja, ka, kn, ko, ku, kw, lt, lv, ml, mr, ms, nb, nl, pl, pt-BR, pt-PT, ro, ru,
 sk, sl, sr, sv, sw, ta, te, th, tr, ug, uk, vi, zh-CN, zh-TW

chromium-chromedriver: WebDriver driver for the Chromium Browser

 Chromedriver serves as a bridge between Chromium Browser and Selenium
 WebDriver.
 .
 See https://sites.google.com/a/chromium.org/chromedriver/ for details.

chromium-chromedriver-dbgsym: debug symbols for package chromium-chromedriver

 Chromedriver serves as a bridge between Chromium Browser and Selenium
 WebDriver.
 .
 See https://sites.google.com/a/chromium.org/chromedriver/ for details.

chromium-codecs-ffmpeg: Free ffmpeg codecs for the Chromium Browser

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.
 .
 This package contains the multi-threaded ffmpeg codecs needed for the HTML5
 <audio> and <video> tags. Only the free ogg, vorbis and theora codecs are
 included. See chromium-codecs-ffmpeg-extra for additional codecs

chromium-codecs-ffmpeg-dbgsym: debug symbols for package chromium-codecs-ffmpeg

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.
 .
 This package contains the multi-threaded ffmpeg codecs needed for the HTML5
 <audio> and <video> tags. Only the free ogg, vorbis and theora codecs are
 included. See chromium-codecs-ffmpeg-extra for additional codecs

chromium-codecs-ffmpeg-extra: Extra ffmpeg codecs for the Chromium Browser

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.
 .
 This package contains the multi-threaded ffmpeg codecs needed for the HTML5
 <audio> and <video> tags. In addition to the patent-free ogg, vorbis and
 theora codecs, aac/ac3/mpeg4audio/h264/mov/mp3 are also included. See
 chromium-codecs-ffmpeg if you prefer only the patent-free codecs

chromium-codecs-ffmpeg-extra-dbgsym: debug symbols for package chromium-codecs-ffmpeg-extra

 An open-source browser project that aims to build a safer, faster, and more
 stable way for all Internet users to experience the web.
 .
 This package contains the multi-threaded ffmpeg codecs needed for the HTML5
 <audio> and <video> tags. In addition to the patent-free ogg, vorbis and
 theora codecs, aac/ac3/mpeg4audio/h264/mov/mp3 are also included. See
 chromium-codecs-ffmpeg if you prefer only the patent-free codecs