-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 Format: 1.8 Date: Tue, 20 Jan 2026 20:25:10 -0500 Source: chromium Architecture: source Version: 144.0.7559.96-1~deb12u1 Distribution: bookworm-security Urgency: high Maintainer: Debian Chromium Team Changed-By: Andres Salomon Changes: chromium (144.0.7559.96-1~deb12u1) bookworm-security; urgency=high . [ Andres Salomon ] * New upstream security release. - CVE-2026-1220: Race in V8. Reported by @p1nky4745. * d/scripts/unbundle: switch to bundled libxml2, so that we get features of XML_PARSE_NO_XXE (which disables loading of external content) in trixie/bookworm. * d/copyright: stop deleting the bundled libxml2. * d/clean: stop deleting the libxml2 symlink. * d/control: drop libxml2-dev build dep. * d/patches: - trixie/libxml-parseerr.patch: drop; we're using bundled libxml. - trixie/libxml2-no-xxe.patch: drop; we're using bundled libxml. . [ Daniel Richard G. ] * d/patches/bookworm/bindgen.patch: Move the libclang edit from here ... * d/patches/fixes/bindgen-paths.patch: ... over to this new patch, which takes a simpler approach that is easier to override later in the series ... * d/patches/ppc64le/fixes/bindgen.patch: ... and makes this patch redundant. * d/patches/ppc64le/sandbox/0001-sandbox-Enable-seccomp_bpf-for-ppc64.patch: Add a __NR_mseal definition that is needed in the Ubuntu builds. Checksums-Sha1: eecc1d0f573b35318f4b586add361347ee6ebccc 4046 chromium_144.0.7559.96-1~deb12u1.dsc 41baa4e392a418fb4a2fdd73c9e5044eb935b5df 734367996 chromium_144.0.7559.96.orig.tar.xz ae2441c1f88b028091d85d88d8ede9dba3a488c3 8531152 chromium_144.0.7559.96-1~deb12u1.debian.tar.xz 5c3833dbc713e3135abb436b2e0f5a5ea8dde91a 26825 chromium_144.0.7559.96-1~deb12u1_source.buildinfo Checksums-Sha256: 7bc543112d970a83b922585e0345dda838f88df27116b492c74055c995a286fe 4046 chromium_144.0.7559.96-1~deb12u1.dsc 25358df2bc37accbd02337b6ec04b79d051e6a4bd1379b9265a0605ab9d481c1 734367996 chromium_144.0.7559.96.orig.tar.xz 8755fba4f0ea7098521164db6eb0e879d1d35d9b2e92e47ad30265970c88d2a7 8531152 chromium_144.0.7559.96-1~deb12u1.debian.tar.xz 76f3e5fd4430744bd512017b034826fe2230462e6a6299df2a13eabd4fda6289 26825 chromium_144.0.7559.96-1~deb12u1_source.buildinfo Files: 6bfa7b6522d14e4dc5e65da6cd12a091 4046 web optional chromium_144.0.7559.96-1~deb12u1.dsc 03bae05ed88c11fd27df15c8df41e0a3 734367996 web optional chromium_144.0.7559.96.orig.tar.xz 805b3d7bd3560cf05458b887aef7764f 8531152 web optional chromium_144.0.7559.96-1~deb12u1.debian.tar.xz 966429b8272340151e109a57dc9e9e9a 26825 web optional chromium_144.0.7559.96-1~deb12u1_source.buildinfo -----BEGIN PGP SIGNATURE----- iQJIBAEBCAAyFiEEUAUk+X1YiTIjs19qZF0CR8NudjcFAmlxgY0UHGRpbGluZ2Vy QGRlYmlhbi5vcmcACgkQZF0CR8Nudjc7fA//RVGKdCN/C43D647B5G4Z53d867ut ZDtelByQJHNFOSpxiaPFX3YyJI1Or0FBkNEyECHQ6W6AxqZxsuV0ySysAHhE9ytw y3YZOJ/xrXUjBg4qn8aLx1QPfWxqD6ZPL8xgorFcnkQvnQSZK4PhlLWfVvKevA2x CEBisWcmJPwhw6A3N24+mcOmdb4oZL56FfVWy7MMEtJVLsX7CNhFGjhipb1pzAgy CObvV9F97yinnt5Ls0MQWfhOkNtrbUoDIAMXwptknMIasi4n942Xkrsy9j7sdb1D HZ+eUICSuqwwn3XA4nSMBKbqKOUgUjm9PZS4h7w3z5A2nJ3EZ4WJHAIcBuc4YqHh 8+tSIJ88jIurbUxE1GVFqSqWuBPC4hJBlSj1FSE828aKAeVJpMQCsT/JEgZ82dxq f7GNhimCFhXS0+X5n4dZRUFqeKOYesRoR6w3LDAu4x/HRcr+2kfGMlDP0HL4glCp 149qYPXuBK9GTfkOrFEFds6lJ335WBqjAsxySOeUX1+/Vic3bfgruQADhUQWrkxI Li+OsuROD5lZrzH4sxJWK2JZsCF+EqzbL7lseHj2Jr3tFvyqmTgXfY6SEZNh7E2O rO1HED2QAVsQzQl+sfiyb5oczKoTElYXqbAATWRMA91FDXc+TgBFN7E6YFeOtW/F LuxBTfMhP0EZknw= =gZIm -----END PGP SIGNATURE-----