-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 03 Dec 2017 15:26:02 +0000 Source: chromium-browser Binary: chromium chromium-l10n chromium-shell chromium-widevine chromium-driver chromedriver Architecture: amd64 Version: 63.0.3239.84-1~deb9u1 Distribution: stretch-security Urgency: medium Maintainer: amd64 Build Daemon (binet) Changed-By: Michael Gilbert Description: chromedriver - web browser - WebDriver support transitional package chromium - web browser chromium-driver - web browser - WebDriver support chromium-l10n - web browser - language packs chromium-shell - web browser - minimal shell chromium-widevine - web browser - widevine content decryption support Changes: chromium-browser (63.0.3239.84-1~deb9u1) stretch-security; urgency=medium . * New upstream stable release. - CVE-2017-15407: Out of bounds write in QUIC. Reported by Ned Williamson - CVE-2017-15408: Heap buffer overflow in PDFium. Reported by Ke Liu - CVE-2017-15409: Out of bounds write in Skia. Reported by Anonymous - CVE-2017-15410: Use after free in PDFium. Reported by Luật Nguyễn - CVE-2017-15411: Use after free in PDFium. Reported by Luật Nguyễn - CVE-2017-15413: Type confusion in WebAssembly. Reported by Gaurav Dewan - CVE-2017-15415: Pointer information disclosure in IPC call. Reported by Viktor Brange - CVE-2017-15416: Out of bounds read in Blink. Reported by Ned Williamson - CVE-2017-15417: Cross origin information disclosure in Skia . Reported by Max May - CVE-2017-15418: Use of uninitialized value in Skia. Reported by Kushal Arvind Shah - CVE-2017-15419: Cross origin leak of redirect URL in Blink. Reported by Jun Kokatsu - CVE-2017-15420: URL spoofing in Omnibox. Reported by WenXu Wu - CVE-2017-15423: Issue with SPAKE implementation in BoringSSL. Reported by Greg Hudson - CVE-2017-15424: URL Spoof in Omnibox. Reported by Khalil Zhani - CVE-2017-15425: URL Spoof in Omnibox. Reported by xisigr - CVE-2017-15426: URL Spoof in Omnibox. Reported by WenXu Wu - CVE-2017-15427: Insufficient blocking of JavaScript in Omnibox. Reported by Junaid Farhan Checksums-Sha1: ecde994bb6f91bc4e799e4f8fb92036ee651060b 123698 chromedriver_63.0.3239.84-1~deb9u1_amd64.deb 84f4a7b02689e5ab8d39b1b08c7639a256774da0 21298 chromium-browser_63.0.3239.84-1~deb9u1_amd64.buildinfo d97c7f492d7abb65e70c217f3022a1e6d3f18444 7458546 chromium-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 49a17ec1f8c7118899eeee40cde3712b77897d87 435918 chromium-driver-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 53a6447bf4e788e3bd1334ba7f8525326d5453e8 3429906 chromium-driver_63.0.3239.84-1~deb9u1_amd64.deb 7241e368e89c79193f67b9f0d465bfc6e025b7ae 4927848 chromium-shell-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb be56411df2d9295ac8cb36f99ab7e766bf90e319 22063434 chromium-shell_63.0.3239.84-1~deb9u1_amd64.deb 6e598076394aa4704c4809cac7d7e5cb48465dd5 150892 chromium-widevine_63.0.3239.84-1~deb9u1_amd64.deb 11893391483017eda42f36d17a8ca5a735bc931b 44365948 chromium_63.0.3239.84-1~deb9u1_amd64.deb Checksums-Sha256: 90cd6001dd95376ba8b0abd6b5ed8bf9f9d0667ea6b32d1275f02903e35937e3 123698 chromedriver_63.0.3239.84-1~deb9u1_amd64.deb 7557013e2078fc7606624972cb82f2c158a501b1f518af8f7155f0b0eeb4a231 21298 chromium-browser_63.0.3239.84-1~deb9u1_amd64.buildinfo 6d16f6bcf13e484f08e4875dda38eb7e667912b63ac7c336122eecf21f6d05dc 7458546 chromium-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb d1d50985b99ab052496044f90dc5f3b5db368fc69ee2cd364e7ac35665bdacba 435918 chromium-driver-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 9f4e362de4b2edbfe59e972956d9cdfb1422f5b21a1d196391ab00e33aaba28d 3429906 chromium-driver_63.0.3239.84-1~deb9u1_amd64.deb 48367192ab2dfb153a27c175f906f965ee91973e3c2c9a57b589c69d848a2770 4927848 chromium-shell-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 5080dc75d4b0946819c2568cb7f20ec703ef1fc74265f579fd3a1cec864c2646 22063434 chromium-shell_63.0.3239.84-1~deb9u1_amd64.deb 7739321ec1b43c9e1091b3df6d936c13aea78061d19313abe5dbcbaaaf3ca6f2 150892 chromium-widevine_63.0.3239.84-1~deb9u1_amd64.deb 9ff3a3a1e2d492ad46b8d5b0aa0c56278988d1497d0813b6ae53ec797fe11655 44365948 chromium_63.0.3239.84-1~deb9u1_amd64.deb Files: 6cba82a1df4f5c8ef187b2893add5f90 123698 web optional chromedriver_63.0.3239.84-1~deb9u1_amd64.deb 24149ba32bec234ddbc1529dc1bba4f2 21298 web optional chromium-browser_63.0.3239.84-1~deb9u1_amd64.buildinfo c51a4b91aab23f624c59688e20082342 7458546 debug extra chromium-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 3ee3092e096f0c4bae17a502b1cf09a9 435918 debug extra chromium-driver-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 2249ba14381648238302e6dc5a3de80c 3429906 web optional chromium-driver_63.0.3239.84-1~deb9u1_amd64.deb 9d3829180a9ccd6cf0b35733afaa82be 4927848 debug extra chromium-shell-dbgsym_63.0.3239.84-1~deb9u1_amd64.deb 3f4ce440355eae539a5a74b783586fac 22063434 web optional chromium-shell_63.0.3239.84-1~deb9u1_amd64.deb 5e5a1c5005b66caec6ec90a78f6b74ad 150892 contrib/web optional chromium-widevine_63.0.3239.84-1~deb9u1_amd64.deb 368539fed3612d56fc2f50e7f8231675 44365948 web optional chromium_63.0.3239.84-1~deb9u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEyT9Sp5Gew/rj3m7114gF3mj51YMFAlouCMsACgkQ14gF3mj5 1YNwXw/+NYl3O+EomheqlJ5GZj3moWTzrqzMJGAJzGBh7IWYnDuZ/CiRdFVsNjKU /i315X6nL8t1oXviRgyx6dtf14LFvZZvQGMVWqZh00xFHGg7rbZXO4OzrgXRDRp7 Hm/Qv+cnUbVxveX2nD0uERHWDjikcJQravwgrZYczPNSf2XhRSVR2yeTBp2bwbJs d2fIwA6uN9RrxoPosRR2FWpa0GR7V/SqX2TtnR5wuOsQI1O+psM2L13x/jd7yuv4 N2t1ZfV8k6Q2L2QKMH3p3c814DurFMUs1kiNzajPHkuCnueLCG8qVIbreBFKRaUE orzHi34Wj5SvhOgnepug/yUV6gzQB1KZAOXU+F40cec9neCl4YifCBDnfaHcHJld 6FKuhsxw/XRvbwhczRvC7B/Rrnlf6Ycy4DQf6cQQfhJxJlJqpUWGrVX7COzvFTDo 0KRIpgRO4wDQN0Gvve4YI0dXfJwjBQ2uj7aXJsFEF1BJC28915TDMdevRTcfp/vB 1auUroOHLQGin0YiaFnkEzRldb0rP9zJSr9zKv7SjsGxg6MOvhbDlD+aZ4XS4die YFJoBKEJNHEjd0tNzTa8S7ies2GjfrmwTGXgIgddmmspbxeC57cqq6HjswtzmpN9 HWJ6MRpsRB9coto8B5jkYaqRkwJ/8EFoTN7nvlCqMXxun3W8B+k= =DWVV -----END PGP SIGNATURE-----