Format: 1.8 Date: Thu, 14 Apr 2011 22:36:16 +0200 Source: chromium-browser Binary: chromium-browser chromium-browser-dbg chromium-browser-l10n chromium-browser-inspector chromium-codecs-ffmpeg chromium-codecs-ffmpeg-dbg chromium-codecs-ffmpeg-extra chromium-codecs-ffmpeg-extra-dbg chromium-codecs-ffmpeg-nonfree chromium-codecs-ffmpeg-nonfree-dbg Architecture: all i386_translations i386 Version: 10.0.648.205~r81283-0ubuntu0.10.04.1 Distribution: lucid Urgency: high Maintainer: Ubuntu/i386 Build Daemon Changed-By: Fabien Tassin Description: chromium-browser - Chromium browser chromium-browser-dbg - chromium-browser debug symbols chromium-browser-inspector - page inspector for the chromium-browser chromium-browser-l10n - chromium-browser language packages chromium-codecs-ffmpeg - Free ffmpeg codecs for the Chromium Browser chromium-codecs-ffmpeg-dbg - chromium-codecs-ffmpeg debug symbols chromium-codecs-ffmpeg-extra - Extra ffmpeg codecs for the Chromium Browser chromium-codecs-ffmpeg-extra-dbg - chromium-codecs-ffmpeg-extra debug symbols chromium-codecs-ffmpeg-nonfree - dummy upgrade package chromium-codecs-ffmpeg-nonfree-dbg - dummy upgrade package Launchpad-Bugs-Fixed: 735877 738331 742118 745854 759635 762275 Changes: chromium-browser (10.0.648.205~r81283-0ubuntu0.10.04.1) lucid-security; urgency=high . * New upstream minor release from the Stable Channel (LP: #762275) This release fixes the following security issues: - [75629] Critical, CVE-2011-1301: Use-after-free in the GPU process. Credit to Google Chrome Security Team (Inferno). - [78524] Critical, CVE-2011-1302: Heap overflow in the GPU process. Credit to Christoph Diehl. This releasse also contains the security fixes from 10.0.648.204~r79063 (which has been skipped by the sponsors) (LP: #742118) + Webkit bugs: - [73216] High, CVE-2011-1292: Use-after-free in the frame loader. Credit to Sławomir Błażek. - [73595] High, CVE-2011-1293: Use-after-free in HTMLCollection. Credit to Sergey Glazunov. - [74562] High, CVE-2011-1294: Stale pointer in CSS handling. Credit to Sergey Glazunov. - [74991] High, CVE-2011-1295: DOM tree corruption with broken node parentage. Credit to Sergey Glazunov. - [75170] High, CVE-2011-1296: Stale pointer in SVG text handling. Credit to Sergey Glazunov. + Chromium bugs: - [72517] High, CVE-2011-1291: Buffer error in base string handling. Credit to Alex Turpin. Packaging changes: * Set arm_fpu=vfpv3-d16 on arm (less restrictive than the default vfpv3) preventing a SIGILL crash on some boards (LP: #735877) - update debian/control * Install libppGoogleNaClPluginChrome.so (LP: #738331) - update debian/rules - update debian/chromium-browser.install * Fix the apport hooks to pass the expected 'ui' to add_info(), needed when called from apport/ubuntu-bug (LP: #759635) - update debian/apport/chromium-browser.py * NaCL may be blacklisted, so only include it when it's actually been built (fixes the ftbfs on arm) (LP: #745854) - update debian/rules - update debian/chromium-browser.install * Harden the apport hooks in the extensions section - update debian/apport/chromium-browser.py Checksums-Sha1: ab569776f7da7e44e1972870b078f0179b117171 1697122 chromium-browser-l10n_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 5df6c241dfad118c8c7c2a266e650e3b7e8d42e5 174061 chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386_translations.tar.gz 221e1aaff6c91f162019e8471ada98b22f77b4a3 561256 chromium-browser-inspector_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb eb3f4fc69542190535f0c3697d1edeee5e4373ae 121638 chromium-codecs-ffmpeg-nonfree_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb f03cca8932db83572085613fb6957495650d7b76 121650 chromium-codecs-ffmpeg-nonfree-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 2b153d7e18a797b5352bbea351edd28afd181a53 15384376 chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 728e2cf82005f92f3c1abb066cbc0749e473ad93 134198588 chromium-browser-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 6880364ec3e12fff3c914f10be0a62dd27d67b5b 283786 chromium-codecs-ffmpeg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 47cd5de25f85c6fd8c1a4502ac9c16db2a9ca31b 453180 chromium-codecs-ffmpeg-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb fabec37093b354392d29d8ea0863506f7e5451df 498490 chromium-codecs-ffmpeg-extra_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 7752df1cf4e8f4bca1236d28f7e459d2fa453d61 760530 chromium-codecs-ffmpeg-extra-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb Checksums-Sha256: fd0a5eff95b8c505bc2e9548bb585242d44b640c96947163834cfd6854564636 1697122 chromium-browser-l10n_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb b1726da614c4fc019a7ffb3417b2af8d78006b5fe1ef2b07713f600e065f716d 174061 chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386_translations.tar.gz 955eb141eb67e82a1c97c62e4a244150437107aca32d9c5b055b4a5ec5165fc1 561256 chromium-browser-inspector_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 6e6789552bb1d7f31bff5cee2bb3768ef3daada39f1ad9670955e3ca400f3a86 121638 chromium-codecs-ffmpeg-nonfree_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 4934b2b3970430f37c9d8bf7d684b443a711cac912e336cb1fd2cec5c60169ac 121650 chromium-codecs-ffmpeg-nonfree-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb d44ad9b9364cb28b0317ade60d39acfd3121eae15d7ff83f2eec62ebd53e5ed2 15384376 chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 0a00f8792c617857d24754e6ba7cee71010b40a6e2a48c988fd0a2a20fd3ea4e 134198588 chromium-browser-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 9b3a20c87c6bc27e78192d1afac78f27cde7604d49b6532142ee9c26f09a087a 283786 chromium-codecs-ffmpeg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 82531ccf20d4bb04a032a008fe516f9050bf1df19e1b1ec9f546463b40c85a0e 453180 chromium-codecs-ffmpeg-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb d76da915af9b61f541cd968d766c8bdc455ae1cd22db4397b3ccc293ab9d5ae1 498490 chromium-codecs-ffmpeg-extra_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 09ae203e15b80c087b8d00722ec06abcb11c4b030fab33e35a52ffedec1dbe8f 760530 chromium-codecs-ffmpeg-extra-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb Files: c6c63de798bd346645cffeede972f2c4 1697122 web optional chromium-browser-l10n_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 25acdb97ba45c3584be3a26a91d60e2e 174061 raw-translations - chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386_translations.tar.gz 371819f11bd68444ee864792196a5858 561256 web optional chromium-browser-inspector_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb e9d6d949d87a6da8aa6851adf5dd8d8c 121638 web optional chromium-codecs-ffmpeg-nonfree_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 7fa64da7271a185fbb1c5541147a510a 121650 web optional chromium-codecs-ffmpeg-nonfree-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_all.deb 15e80c70447005aae3c97218fe41a9ba 15384376 web optional chromium-browser_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 399dad3d23babbee9c5177b53135805c 134198588 devel optional chromium-browser-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 4e998c53096a3672cefe4e236e68f26e 283786 web optional chromium-codecs-ffmpeg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb a2339f2d429389b5687197f7fef9997c 453180 debug extra chromium-codecs-ffmpeg-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb 0537005adf7460d152a913e305fe5b5c 498490 web optional chromium-codecs-ffmpeg-extra_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb d83b81a487a90429702fa2d897f2fc03 760530 debug extra chromium-codecs-ffmpeg-extra-dbg_10.0.648.205~r81283-0ubuntu0.10.04.1_i386.deb