-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

===========================================================================
             AUSCERT External Security Bulletin Redistribution

                               ESB-2020.2299
                        chromium regression update
                                6 July 2020

===========================================================================

        AusCERT Security Bulletin Summary
        ---------------------------------

Product:           chromium
Publisher:         Debian
Operating System:  Debian GNU/Linux 10
Impact/Access:     Denial of Service -- Unknown/Unspecified
Resolution:        Patch/Upgrade

Original Bulletin: 
   http://www.debian.org/security/2020/dsa-4714-2

- --------------------------BEGIN INCLUDED TEXT--------------------

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

- - -------------------------------------------------------------------------
Debian Security Advisory DSA-4714-2                   security@debian.org
https://www.debian.org/security/                          Michael Gilbert
July 04, 2020                         https://www.debian.org/security/faq
- - -------------------------------------------------------------------------

Package        : chromium
Debian Bug     : 964145

The previous update for chromium released as DSA 4714-1 was mistakenly
built without compiler optimizations.  This caused high CPU load and
frequent crashes.  Updated chromium packages are now available that
correct this issue.

For the oldstable distribution (stretch), security support for chromium
has been discontinued.

For the stable distribution (buster), this problem has been fixed in
version 83.0.4103.116-1~deb10u2.

We recommend that you upgrade your chromium packages.

For the detailed security status of chromium please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/chromium

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/

Mailing list: debian-security-announce@lists.debian.org
- -----BEGIN PGP SIGNATURE-----
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=JPcp
- -----END PGP SIGNATURE-----

- --------------------------END INCLUDED TEXT--------------------

You have received this e-mail bulletin as a result of your organisation's
registration with AusCERT. The mailing list you are subscribed to is
maintained within your organisation, so if you do not wish to continue
receiving these bulletins you should contact your local IT manager. If
you do not know who that is, please send an email to auscert@auscert.org.au
and we will forward your request to the appropriate person.

NOTE: Third Party Rights
This security bulletin is provided as a service to AusCERT's members.  As
AusCERT did not write the document quoted above, AusCERT has had no control
over its content. The decision to follow or act on information or advice
contained in this security bulletin is the responsibility of each user or
organisation, and should be considered in accordance with your organisation's
site policies and procedures. AusCERT takes no responsibility for consequences
which may arise from following or acting on information or advice contained in
this security bulletin.

NOTE: This is only the original release of the security bulletin.  It may
not be updated when updates to the original are made.  If downloading at
a later date, it is recommended that the bulletin is retrieved directly
from the author's website to ensure that the information is still current.

Contact information for the authors of the original document is included
in the Security Bulletin above.  If you have any questions or need further
information, please contact them directly.

Previous advisories and external security bulletins can be retrieved from:

        https://www.auscert.org.au/bulletins/

===========================================================================
Australian Computer Emergency Response Team
The University of Queensland
Brisbane
Qld 4072

Internet Email: auscert@auscert.org.au
Facsimile:      (07) 3365 7031
Telephone:      (07) 3365 4417 (International: +61 7 3365 4417)
                AusCERT personnel answer during Queensland business hours
                which are GMT+10:00 (AEST).
                On call after hours for member emergencies only.
===========================================================================
-----BEGIN PGP SIGNATURE-----
Comment: http://www.auscert.org.au/render.html?it=1967
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=LryW
-----END PGP SIGNATURE-----