-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Wed, 17 Jun 2026 01:14:44 -0400 Source: chromium Architecture: source Version: 149.0.7827.155-1 Distribution: unstable Urgency: high Maintainer: Debian Chromium Team <[email protected]> Changed-By: Andres Salomon <[email protected]> Changes: chromium (149.0.7827.155-1) unstable; urgency=high . [ Andres Salomon ] * New upstream security release. - CVE-2026-12437: Use after free in WebShare. Reported by Google. - CVE-2026-12438: Inappropriate implementation in WebView. Reported by Google. - CVE-2026-12439: Use after free in Digital Credentials. Reported by Google. - CVE-2026-12440: Use after free in DigitalCredentials. Reported by Google - CVE-2026-12441: Use after free in File Input. Reported by Google. - CVE-2026-12442: Use after free in Passwords. Reported by Google. - CVE-2026-12443: Use after free in Web Authentication. Reported by Google - CVE-2026-12444: Out of bounds read in Chromoting. Reported by Google. - CVE-2026-12445: Use after free in Extensions. Reported by Google. - CVE-2026-12446: Insufficient data validation in Passwords. Reported by Google. - CVE-2026-12447: Heap buffer overflow in WebRTC. Reported by Google. - CVE-2026-12448: Inappropriate implementation in WebView. Reported by Google. - CVE-2026-12449: Use after free in Chromoting. Reported by Google. - CVE-2026-12450: Inappropriate implementation in Media. Reported by Zhixin Tu. - CVE-2026-12451: Use after free in DigitalCredentials. Reported by Google - CVE-2026-12452: Use after free in Downloads. Reported by Google. - CVE-2026-12453: Insufficient validation of untrusted input in Input. Reported by Google. - CVE-2026-12454: Race in Safe Browsing. Reported by Google. - CVE-2026-12455: Use after free in Tab Strip. Reported by Google. - CVE-2026-12456: Insufficient validation of untrusted input in Extensions. Reported by Google. - CVE-2026-12457: Insufficient data validation in Extensions. Reported by Google. - CVE-2026-12458: Incorrect security UI in Passwords. Reported by Google. - CVE-2026-12459: Inappropriate implementation in Serial. Reported by Google. - CVE-2026-12460: Insufficient policy enforcement in File System Access. Reported by Google. - CVE-2026-12461: Out of bounds read in WebRTC. Reported by Google. - CVE-2026-12462: Use after free in Media. Reported by Google. - CVE-2026-12463: Inappropriate implementation in Views. Reported by Google. - CVE-2026-12464: Use after free in Browser. Reported by Google. - CVE-2026-12465: Insufficient validation of untrusted input in Metrics. Reported by Google. - CVE-2026-12466: Heap buffer overflow in WebRTC. Reported by Google. - CVE-2026-12467: Use after free in Extensions. Reported by Google. - CVE-2026-12468: Inappropriate implementation in Updater. Reported by Google. - CVE-2026-12469: Uninitialized Use in GPU. Reported by Google. Checksums-Sha1: 373d1f7912e164ca8b2e4b442889f91bfd209b0b 4079 chromium_149.0.7827.155-1.dsc b4d264b6215478bb7991d87cbeaa1ee601d847a0 928831668 chromium_149.0.7827.155.orig.tar.xz 4d2a05206d9d91be3840e24c013c265d954f5580 496640 chromium_149.0.7827.155-1.debian.tar.xz 565d2826184e10de1f41e810a14858d2a9841947 27919 chromium_149.0.7827.155-1_source.buildinfo Checksums-Sha256: 9c07fdc209bfc384f97c7f8a62700f030fdf00eff601c2017fa4ed79a4393736 4079 chromium_149.0.7827.155-1.dsc 26a570d8be75445c40a475f0a9c7854582b85bdc759ca65272f28c0e555619d0 928831668 chromium_149.0.7827.155.orig.tar.xz 3ee9bb2ff424eb3a9dcf9c55aad3e5678145236c5edd815aab97f53a3cebfe3c 496640 chromium_149.0.7827.155-1.debian.tar.xz d56c4c80e4f116910eed30c5cfe2679d90e1d98cb519f3992a52e2e2cc17d678 27919 chromium_149.0.7827.155-1_source.buildinfo Files: c04739f37b4c62b51e0de3858450f579 4079 web optional chromium_149.0.7827.155-1.dsc ff5abb98528d4d7e91f75325b9532006 928831668 web optional chromium_149.0.7827.155.orig.tar.xz a6e406e715ba026ed87e3fbbe3c2a61a 496640 web optional chromium_149.0.7827.155-1.debian.tar.xz dc5bfaf2d6cdb4b9eb2a996e3fe12d7d 27919 web optional chromium_149.0.7827.155-1_source.buildinfo
-----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmozEukUHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8NudjeXrg//dk9C7nV/Zsm0VFUND/NXTPExmNXQ Fn4WIgsZCaq92u9RLi5xn3t8XUHmjZrQuoonxMSigoP3yC/RZcGYIJUM/gk+5UrN w99/sfn8z0aRBGYl9YdW5HRFMtEifduSdxIvTEyElDNijyjXcoyq9CFJQpouKOdb /8NzGwAP1dWinwYE10kHcz0mTEcMPzQ78AgwrftoRx7/LpWf/9x2LesjVbuuzAqr 7saM3pxEmFEfvm3bKmJ8rBAheCt8vMcGsmeusg1lY50Ksi0ADiJsZ3vuyxcGinY9 gyHqtd1KUuGczXvNth/PyQ0TN7VV8mu1uQmvG3DUmgUoLP/KOV/ZqW12N4a/4CQH 6j+qnNmtno/kqTuoi8FVy5X+dnFHvm3BBffTynnmO9Q8N28gWlsnQaKrbG+2eMlw Kegj9+KkjW+vUYXH+l+rHiD3pMmmHMyHZ0opAQMz/xUaL719mcgXlPfRaDGhTa6R lf3XbBBtdQkfA9Oe4WCmbjclT4pbpaKCk66vBun2ki3gAdJ6FsrL4+61pbPAfJBs NUj3SNoAKUp3yYwjkvmznMtk08Gv1DxU34Pw7KjEcuAfsO/u8W5z3XdwxRHd+kbk V26EJjnz1kA8imQWM2b/s7LEQImiL7Vy9GQIfI5JZZ0pJIPDFtpzkow6hQIzlmmh nsqG+IwbLXqLs7M= =5wrm -----END PGP SIGNATURE-----
pgpVu6z7EyVVH.pgp
Description: PGP signature

