[ubuntu/natty] chromium-browser 10.0.648.204~r79063-0ubuntu1 (Accepted)

Fabien Tassin fta at ubuntu.com
Thu Mar 24 23:31:06 UTC 2011


chromium-browser (10.0.648.204~r79063-0ubuntu1) natty; urgency=high

  * New upstream minor release from the Stable Channel (LP: #742118)
    This release fixes the following security issues:
    + Webkit bugs:
      - [73216] High, CVE-2011-1292: Use-after-free in the frame loader. Credit
        to Sławomir Błażek.
      - [73595] High, CVE-2011-1293: Use-after-free in HTMLCollection. Credit
        to Sergey Glazunov.
      - [74562] High, CVE-2011-1294: Stale pointer in CSS handling. Credit to
        Sergey Glazunov.
      - [74991] High, CVE-2011-1295: DOM tree corruption with broken node
        parentage. Credit to Sergey Glazunov.
      - [75170] High, CVE-2011-1296: Stale pointer in SVG text handling. Credit
        to Sergey Glazunov.
    + Chromium bugs:
      - [72517] High, CVE-2011-1291: Buffer error in base string handling.
        Credit to Alex Turpin.
  Packaging changes:
  * Set arm_fpu=vfpv3-d16 on arm (less restrictive than the default vfpv3)
    preventing a SIGILL crash on some boards (LP: #735877)
    - update debian/control
  * Install libppGoogleNaClPluginChrome.so (LP: #738331)
    - update debian/rules
    - update debian/chromium-browser.install

Date: Thu, 24 Mar 2011 23:05:14 +0100
Changed-By: Fabien Tassin <fta at ubuntu.com>
https://launchpad.net/ubuntu/natty/+source/chromium-browser/10.0.648.204~r79063-0ubuntu1
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Thu, 24 Mar 2011 23:05:14 +0100
Source: chromium-browser
Binary: chromium-browser chromium-browser-dbg chromium-browser-l10n chromium-browser-inspector chromium-codecs-ffmpeg chromium-codecs-ffmpeg-dbg chromium-codecs-ffmpeg-extra chromium-codecs-ffmpeg-extra-dbg chromium-codecs-ffmpeg-nonfree chromium-codecs-ffmpeg-nonfree-dbg
Architecture: source
Version: 10.0.648.204~r79063-0ubuntu1
Distribution: natty
Urgency: high
Maintainer: Fabien Tassin <fta at ubuntu.com>
Changed-By: Fabien Tassin <fta at ubuntu.com>
Description: 
 chromium-browser - Chromium browser
 chromium-browser-dbg - chromium-browser debug symbols
 chromium-browser-inspector - page inspector for the chromium-browser
 chromium-browser-l10n - chromium-browser language packages
 chromium-codecs-ffmpeg - Free ffmpeg codecs for the Chromium Browser
 chromium-codecs-ffmpeg-dbg - chromium-codecs-ffmpeg debug symbols
 chromium-codecs-ffmpeg-extra - Extra ffmpeg codecs for the Chromium Browser
 chromium-codecs-ffmpeg-extra-dbg - chromium-codecs-ffmpeg-extra debug symbols
 chromium-codecs-ffmpeg-nonfree - dummy upgrade package
 chromium-codecs-ffmpeg-nonfree-dbg - dummy upgrade package
Launchpad-Bugs-Fixed: 735877 738331 742118
Changes: 
 chromium-browser (10.0.648.204~r79063-0ubuntu1) natty; urgency=high
 .
   * New upstream minor release from the Stable Channel (LP: #742118)
     This release fixes the following security issues:
     + Webkit bugs:
       - [73216] High, CVE-2011-1292: Use-after-free in the frame loader. Credit
         to Sławomir Błażek.
       - [73595] High, CVE-2011-1293: Use-after-free in HTMLCollection. Credit
         to Sergey Glazunov.
       - [74562] High, CVE-2011-1294: Stale pointer in CSS handling. Credit to
         Sergey Glazunov.
       - [74991] High, CVE-2011-1295: DOM tree corruption with broken node
         parentage. Credit to Sergey Glazunov.
       - [75170] High, CVE-2011-1296: Stale pointer in SVG text handling. Credit
         to Sergey Glazunov.
     + Chromium bugs:
       - [72517] High, CVE-2011-1291: Buffer error in base string handling.
         Credit to Alex Turpin.
   Packaging changes:
   * Set arm_fpu=vfpv3-d16 on arm (less restrictive than the default vfpv3)
     preventing a SIGILL crash on some boards (LP: #735877)
     - update debian/control
   * Install libppGoogleNaClPluginChrome.so (LP: #738331)
     - update debian/rules
     - update debian/chromium-browser.install
Checksums-Sha1: 
 21ba7f02bed41711d1742a802df4776642c73358 2135 chromium-browser_10.0.648.204~r79063-0ubuntu1.dsc
 32d299fbf0f81eab68b5c9379f26e1dbcbe291ff 188582210 chromium-browser_10.0.648.204~r79063.orig.tar.gz
 91ef23c9630be589cd67e49097dbf339223db6a1 199667 chromium-browser_10.0.648.204~r79063-0ubuntu1.diff.gz
Checksums-Sha256: 
 598118b8ee553141dc385e8d4f57e9ffdcbf95dee92b20389de17cb48bac4e54 2135 chromium-browser_10.0.648.204~r79063-0ubuntu1.dsc
 bdde04086f568928953edc5dc3bec433cf17ec786ed6cde58db4c5e7143fcec7 188582210 chromium-browser_10.0.648.204~r79063.orig.tar.gz
 9913613413f54928e665815ad3c5f86247156c02f3bd48320cb5c903e642df79 199667 chromium-browser_10.0.648.204~r79063-0ubuntu1.diff.gz
Files: 
 11d104eca78ca0b1e96e891fabbaf29f 2135 web optional chromium-browser_10.0.648.204~r79063-0ubuntu1.dsc
 8ce1f754066db41be5b760ed76ca67f4 188582210 web optional chromium-browser_10.0.648.204~r79063.orig.tar.gz
 1aad30ab035ddf4312c32b1087ffebc3 199667 web optional chromium-browser_10.0.648.204~r79063-0ubuntu1.diff.gz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iEYEARECAAYFAk2LzLIACgkQaOfNHbbuIOjHhgCePZz6m3V/2NQyzLd0OlPG7bOq
NnsAoJJw3wcIxHvMMYsqAYCORkElRYXg
=qg5k
-----END PGP SIGNATURE-----


More information about the Natty-changes mailing list