[Pkg-chromium-commit] [pkg-chromium] 05/05: release 34.0.1847.116-1

Michael Gilbert mgilbert at moszumanska.debian.org
Sun Apr 13 20:17:09 UTC 2014


This is an automated email from the git hooks/post-receive script.

mgilbert pushed a commit to branch master
in repository pkg-chromium.

commit 40be9c94c7acbd235e36a6c83c60b28fe9c4bd3c
Author: Michael Gilbert <mgilbert at debian.org>
Date:   Sun Apr 13 16:16:06 2014 -0400

    release 34.0.1847.116-1
---
 debian/changelog | 28 ++++++++++++++++++++++++++++
 1 file changed, 28 insertions(+)

diff --git a/debian/changelog b/debian/changelog
index fe14a3d..7f05c5c 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -1,3 +1,31 @@
+chromium-browser (34.0.1847.116-1) unstable; urgency=high
+
+  * New upstream stable release:
+    - High CVE-2014-1716: UXSS in V8. Credit to Anonymous.
+    - High CVE-2014-1717: OOB access in V8. Credit to Anonymous.
+    - High CVE-2014-1718: Integer overflow in compositor. Credit to Aaron
+      Staple.
+    - High CVE-2014-1719: Use-after-free in web workers. Credit to Collin
+      Payne.
+    - High CVE-2014-1720: Use-after-free in DOM. Credit to cloudfuzzer.
+    - High CVE-2014-1721: Memory corruption in V8. Credit to Christian Holler.
+    - High CVE-2014-1722: Use-after-free in rendering. Credit to miaubiz.
+    - High CVE-2014-1723: Url confusion with RTL characters. Credit to George
+      McBay.
+    - High CVE-2014-1724: Use-after-free in speech. Credit to Atte Kettunen.
+    - Medium CVE-2014-1725: OOB read with window property. Credit to
+      Anonymous.
+    - Medium CVE-2014-1726: Local cross-origin bypass. Credit to Jann Horn.
+    - Medium CVE-2014-1727: Use-after-free in forms. Credit to Khalil Zhani.
+    - CVE-2014-1728: Various fixes from internal audits, fuzzing and other
+      initiatives.
+    - CVE-2014-1729: Multiple vulnerabilities in V8 fixed in version
+      3.24.35.22.
+  * Remove sourceless javascript files (closes: #735355).
+  * Remove sourceless swf files (closes: #735344).
+
+ -- Michael Gilbert <mgilbert at debian.org>  Fri, 11 Apr 2014 01:42:04 +0000
+
 chromium-browser (33.0.1750.152-1) unstable; urgency=high
 
   * [641361a] Disable new GN stuff

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-chromium/pkg-chromium.git



More information about the Pkg-chromium-commit mailing list