1
chromium-browser (13.0.782.215~r97094-0ubuntu1) oneiric; urgency=high
3
* New upstream release from the Stable Channel
4
This release fixes the following security issues:
6
- [91517] High, CVE-2011-2828: Out-of-bounds write in v8. Credit to Google
7
Chrome Security Team (SkyLined).
9
- [82552] High, CVE-2011-2823: Use-after-free in line box handling. Credit
10
to Google Chrome Security Team (SkyLined) and independent later
12
- [88216] High, CVE-2011-2824: Use-after-free with counter nodes. Credit
14
- [88670] High, CVE-2011-2825: Use-after-free with custom fonts. Credit to
15
wushi of team509 reported through ZDI (ZDI-CAN-1283), plus indepdendent
16
later discovery by miaubiz.
17
- [87453] High, CVE-2011-2826: Cross-origin violation with empty origins.
18
Credit to Sergey Glazunov.
19
- [90668] High, CVE-2011-2827: Use-after-free in text searching. Credit to
21
- [32-bit only] [91598] High, CVE-2011-2829: Integer overflow in uniform
22
arrays. Credit to Sergey Glazunov.
24
- [89402] High, CVE-2011-2821: Double free in libxml XPath handling.
25
Credit to Yang Dingning from NCNIPC, Graduate University of Chinese
28
* Fix a FTBFS with cups 1.5.0 by including individual cups headers
29
- add debian/patches/cups_1.5_build_fix.patch
30
- update debian/patches/series
32
-- Fabien Tassin <fta@ubuntu.com> Tue, 23 Aug 2011 07:22:44 +0200
1
34
chromium-browser (13.0.782.107~r94237-0ubuntu2) oneiric; urgency=high
3
36
* Add libgles2-mesa-dev to Build-deps for Armel (only), fixing a FTBFS