* New upstream release from the Stable Channel (LP: #598913)
Fixes the following security issues:
- [38105] Medium XSS via application/json response (regression). Credit to
Ben Davis for original discovery and Emanuele Gentili for regression
discovery.
- [43322] Medium Memory error in video handling. Credit to Mark Dowd under
contract to Google Chrome Security Team.
- [43967] High Subresource displayed in omnibox loading. Credit to Michal
Zalewski of Google Security Team.
- [45267] High Memory error in video handling. Credit to Google Chrome
Security Team (Cris Neckar).
- [46126] High Stale pointer in x509-user-cert response. Credit to Rodrigo
Marcos of SECFORCE.
* Drop the XLIB_SKIP_ARGB_VISUALS workaround now that the rgba patch has
been backed off from gtk2 (LP: #584959)
- update debian/chromium-browser.sh
* Show in about:version and in the About UI when chromium is running on a different
distribution that it has been built on
- udpate debian/rules
- rename and update debian/chromium-browser.sh => debian/chromium-browser.sh.in
* Refresh list of languages in the -l10n package
- update debian/control
* Stop building and running the testsuite. The builders restricted env
makes the results mostly unusable in an automated way and resources to
manually exploit them are not available
- update debian/control
- update debian/rules
* Remove duplicates of the main copyright file in order to save space on the CD
- update debian/rules
* Add support for the Ambiance/Radiance and Dust themes button ordering by
reading the gconf pref (LP: #568307)
(thanks to Giuseppe Iuculano for importing the patch from trunk)
- add debian/patches/gtk-ambiance.patch
- update debian/patches/series
-- Fabien Tassin <email address hidden> Fri, 25 Jun 2010 02:05:06 +0200
This bug was fixed in the package chromium-browser - 5.0.375. 86~r49890- 0ubuntu0. 10.04.1
--------------- 86~r49890- 0ubuntu0. 10.04.1) lucid-proposed; urgency=low
chromium-browser (5.0.375.
* New upstream release from the Stable Channel (LP: #598913) ARGB_VISUALS workaround now that the rgba patch has chromium- browser. sh chromium- browser. sh => debian/ chromium- browser. sh.in patches/ gtk-ambiance. patch patches/ series
Fixes the following security issues:
- [38105] Medium XSS via application/json response (regression). Credit to
Ben Davis for original discovery and Emanuele Gentili for regression
discovery.
- [43322] Medium Memory error in video handling. Credit to Mark Dowd under
contract to Google Chrome Security Team.
- [43967] High Subresource displayed in omnibox loading. Credit to Michal
Zalewski of Google Security Team.
- [45267] High Memory error in video handling. Credit to Google Chrome
Security Team (Cris Neckar).
- [46126] High Stale pointer in x509-user-cert response. Credit to Rodrigo
Marcos of SECFORCE.
* Drop the XLIB_SKIP_
been backed off from gtk2 (LP: #584959)
- update debian/
* Show in about:version and in the About UI when chromium is running on a different
distribution that it has been built on
- udpate debian/rules
- rename and update debian/
* Refresh list of languages in the -l10n package
- update debian/control
* Stop building and running the testsuite. The builders restricted env
makes the results mostly unusable in an automated way and resources to
manually exploit them are not available
- update debian/control
- update debian/rules
* Remove duplicates of the main copyright file in order to save space on the CD
- update debian/rules
* Add support for the Ambiance/Radiance and Dust themes button ordering by
reading the gconf pref (LP: #568307)
(thanks to Giuseppe Iuculano for importing the patch from trunk)
- add debian/
- update debian/
-- Fabien Tassin <email address hidden> Fri, 25 Jun 2010 02:05:06 +0200