[ubuntu/natty] chromium-browser 7.0.517.44~r64615-0ubuntu1 (Accepted)
Fabien Tassin
fta at ubuntu.com
Fri Nov 5 14:20:46 GMT 2010
chromium-browser (7.0.517.44~r64615-0ubuntu1) natty; urgency=high
* New upstream Major release from the Stable Channel (LP: #671420), also
fixing the following security issues:
- [51602] High, Use-after-free in text editing. Credit to David Bloom of
the Google Security Team, Google Chrome Security Team (Inferno) and
Google Chrome Security Team (Cris Neckar).
- [55257] High, Memory corruption with enormous text area. Credit to wushi
of team509.
- [58657] High, Bad cast with the SVG use element. Credit to the kuzzcc.
- [58731] High, Invalid memory read in XPath handling. Credit to Bui Quang
Minh from Bkis (www.bkis.com).
- [58741] High, Use-after-free in text control selections. Credit to
“vkouchna”.
- [59320] High, Integer overflows in font handling. Credit to Aki Helin of
OUSPG.
- [60055] High, Memory corruption in libvpx. Credit to Christoph Diehl.
- [60238] High, Bad use of destroyed frame object. Credit to various
developers, including “gundlach”.
- [60327] [60769] [61255] High, Type confusions with event objects. Credit
to “fam.lam” and Google Chrome Security Team (Inferno).
- [60688] High, Out-of-bounds array access in SVG handling. Credit to wushi
of team509.
* Work-around a gcc 4.5 miscompilation bug causing a regression in the
omnibar, breaking searches (LP: #664584)
- add debian/patches/gcc-4.5-build-workaround.patch
- update debian/patches/series
Date: Thu, 04 Nov 2010 20:53:09 +0100
Changed-By: Fabien Tassin <fta at ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/chromium-browser/7.0.517.44~r64615-0ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Format: 1.8
Date: Thu, 04 Nov 2010 20:53:09 +0100
Source: chromium-browser
Binary: chromium-browser chromium-browser-dbg chromium-browser-l10n chromium-browser-inspector
Architecture: source
Version: 7.0.517.44~r64615-0ubuntu1
Distribution: natty
Urgency: high
Maintainer: Fabien Tassin <fta at ubuntu.com>
Changed-By: Fabien Tassin <fta at ubuntu.com>
Description:
chromium-browser - Chromium browser
chromium-browser-dbg - chromium-browser debug symbols
chromium-browser-inspector - page inspector for the chromium-browser
chromium-browser-l10n - chromium-browser language packages
Launchpad-Bugs-Fixed: 664584 671420
Changes:
chromium-browser (7.0.517.44~r64615-0ubuntu1) natty; urgency=high
.
* New upstream Major release from the Stable Channel (LP: #671420), also
fixing the following security issues:
- [51602] High, Use-after-free in text editing. Credit to David Bloom of
the Google Security Team, Google Chrome Security Team (Inferno) and
Google Chrome Security Team (Cris Neckar).
- [55257] High, Memory corruption with enormous text area. Credit to wushi
of team509.
- [58657] High, Bad cast with the SVG use element. Credit to the kuzzcc.
- [58731] High, Invalid memory read in XPath handling. Credit to Bui Quang
Minh from Bkis (www.bkis.com).
- [58741] High, Use-after-free in text control selections. Credit to
“vkouchna”.
- [59320] High, Integer overflows in font handling. Credit to Aki Helin of
OUSPG.
- [60055] High, Memory corruption in libvpx. Credit to Christoph Diehl.
- [60238] High, Bad use of destroyed frame object. Credit to various
developers, including “gundlach”.
- [60327] [60769] [61255] High, Type confusions with event objects. Credit
to “fam.lam” and Google Chrome Security Team (Inferno).
- [60688] High, Out-of-bounds array access in SVG handling. Credit to wushi
of team509.
* Work-around a gcc 4.5 miscompilation bug causing a regression in the
omnibar, breaking searches (LP: #664584)
- add debian/patches/gcc-4.5-build-workaround.patch
- update debian/patches/series
Checksums-Sha1:
e8269fe9af158fe2441d1a63547beeba2591ebc2 1941 chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
0d5f73f555eb156511e50cc37e46e7092efacbf4 178981743 chromium-browser_7.0.517.44~r64615.orig.tar.gz
b32c944a9693ae9f85e1cbd3c1eaa903687dcdb6 190539 chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz
Checksums-Sha256:
925132378e97c522c07776a6352ad1bf5c3d22789ae4ba02795ae0f8a860a5be 1941 chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
0de6b429e60eb985dd40fd4cfc36fab409d2a8dfa74c6210a94a510d02a84955 178981743 chromium-browser_7.0.517.44~r64615.orig.tar.gz
d9fafa13fc6e7296d3fff3741d496fba42fdfe27c09346e28b5d0e525585211a 190539 chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz
Files:
cd1a856b554e473d7120fcd259d65d21 1941 web optional chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
e6315c8241e0288de07ca17f56f93523 178981743 web optional chromium-browser_7.0.517.44~r64615.orig.tar.gz
6db988beeefaf0cb6ff66e0f338b5625 190539 web optional chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
iEYEARECAAYFAkzUEV0ACgkQaOfNHbbuIOgphwCeLHWM1NZU4W90/iUjj2agjZHO
A6IAoKwi9Z6Re0hHBgakKCtjTMQcDRqV
=Hu4J
-----END PGP SIGNATURE-----
More information about the Natty-changes
mailing list