[ubuntu/natty] chromium-browser 7.0.517.44~r64615-0ubuntu1 (Accepted)

Fabien Tassin fta at ubuntu.com
Fri Nov 5 14:20:46 GMT 2010


chromium-browser (7.0.517.44~r64615-0ubuntu1) natty; urgency=high

  * New upstream Major release from the Stable Channel (LP: #671420), also
    fixing the following security issues:
    - [51602] High, Use-after-free in text editing. Credit to David Bloom of
      the Google Security Team, Google Chrome Security Team (Inferno) and
      Google Chrome Security Team (Cris Neckar).
    - [55257] High, Memory corruption with enormous text area. Credit to wushi
      of team509.
    - [58657] High, Bad cast with the SVG use element. Credit to the kuzzcc.
    - [58731] High, Invalid memory read in XPath handling. Credit to Bui Quang
      Minh from Bkis (www.bkis.com).
    - [58741] High, Use-after-free in text control selections. Credit to
      “vkouchna”.
    - [59320] High, Integer overflows in font handling. Credit to Aki Helin of
      OUSPG.
    - [60055] High, Memory corruption in libvpx. Credit to Christoph Diehl.
    - [60238] High, Bad use of destroyed frame object. Credit to various
      developers, including “gundlach”.
    - [60327] [60769] [61255] High, Type confusions with event objects. Credit
      to “fam.lam” and Google Chrome Security Team (Inferno).
    - [60688] High, Out-of-bounds array access in SVG handling. Credit to wushi
      of team509.
  * Work-around a gcc 4.5 miscompilation bug causing a regression in the
    omnibar, breaking searches (LP: #664584)
    - add debian/patches/gcc-4.5-build-workaround.patch
    - update debian/patches/series

Date: Thu, 04 Nov 2010 20:53:09 +0100
Changed-By: Fabien Tassin <fta at ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/chromium-browser/7.0.517.44~r64615-0ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 04 Nov 2010 20:53:09 +0100
Source: chromium-browser
Binary: chromium-browser chromium-browser-dbg chromium-browser-l10n chromium-browser-inspector
Architecture: source
Version: 7.0.517.44~r64615-0ubuntu1
Distribution: natty
Urgency: high
Maintainer: Fabien Tassin <fta at ubuntu.com>
Changed-By: Fabien Tassin <fta at ubuntu.com>
Description: 
 chromium-browser - Chromium browser
 chromium-browser-dbg - chromium-browser debug symbols
 chromium-browser-inspector - page inspector for the chromium-browser
 chromium-browser-l10n - chromium-browser language packages
Launchpad-Bugs-Fixed: 664584 671420
Changes: 
 chromium-browser (7.0.517.44~r64615-0ubuntu1) natty; urgency=high
 .
   * New upstream Major release from the Stable Channel (LP: #671420), also
     fixing the following security issues:
     - [51602] High, Use-after-free in text editing. Credit to David Bloom of
       the Google Security Team, Google Chrome Security Team (Inferno) and
       Google Chrome Security Team (Cris Neckar).
     - [55257] High, Memory corruption with enormous text area. Credit to wushi
       of team509.
     - [58657] High, Bad cast with the SVG use element. Credit to the kuzzcc.
     - [58731] High, Invalid memory read in XPath handling. Credit to Bui Quang
       Minh from Bkis (www.bkis.com).
     - [58741] High, Use-after-free in text control selections. Credit to
       “vkouchna”.
     - [59320] High, Integer overflows in font handling. Credit to Aki Helin of
       OUSPG.
     - [60055] High, Memory corruption in libvpx. Credit to Christoph Diehl.
     - [60238] High, Bad use of destroyed frame object. Credit to various
       developers, including “gundlach”.
     - [60327] [60769] [61255] High, Type confusions with event objects. Credit
       to “fam.lam” and Google Chrome Security Team (Inferno).
     - [60688] High, Out-of-bounds array access in SVG handling. Credit to wushi
       of team509.
   * Work-around a gcc 4.5 miscompilation bug causing a regression in the
     omnibar, breaking searches (LP: #664584)
     - add debian/patches/gcc-4.5-build-workaround.patch
     - update debian/patches/series
Checksums-Sha1: 
 e8269fe9af158fe2441d1a63547beeba2591ebc2 1941 chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
 0d5f73f555eb156511e50cc37e46e7092efacbf4 178981743 chromium-browser_7.0.517.44~r64615.orig.tar.gz
 b32c944a9693ae9f85e1cbd3c1eaa903687dcdb6 190539 chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz
Checksums-Sha256: 
 925132378e97c522c07776a6352ad1bf5c3d22789ae4ba02795ae0f8a860a5be 1941 chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
 0de6b429e60eb985dd40fd4cfc36fab409d2a8dfa74c6210a94a510d02a84955 178981743 chromium-browser_7.0.517.44~r64615.orig.tar.gz
 d9fafa13fc6e7296d3fff3741d496fba42fdfe27c09346e28b5d0e525585211a 190539 chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz
Files: 
 cd1a856b554e473d7120fcd259d65d21 1941 web optional chromium-browser_7.0.517.44~r64615-0ubuntu1.dsc
 e6315c8241e0288de07ca17f56f93523 178981743 web optional chromium-browser_7.0.517.44~r64615.orig.tar.gz
 6db988beeefaf0cb6ff66e0f338b5625 190539 web optional chromium-browser_7.0.517.44~r64615-0ubuntu1.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iEYEARECAAYFAkzUEV0ACgkQaOfNHbbuIOgphwCeLHWM1NZU4W90/iUjj2agjZHO
A6IAoKwi9Z6Re0hHBgakKCtjTMQcDRqV
=Hu4J
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list