Debian 10694 Published by

Two security updates have been released for Debian systems: ELA-1532-1 libjson-xs-perl for Debian GNU/Linux 9 (Stretch) and 10 (Buster) ELTS and DSA-6016-1 chromium for Debian GNU/Linux 12 (Bookworm) and 13 (Trixie). The libjson-xs-perl update fixes a vulnerability (CVE-2025-40928) that could cause a denial-of-service attack or other unspecified impact when parsing crafted JSON data. Meanwhile, the Chromium update addresses multiple security issues (13 CVEs) that could lead to arbitrary code execution, denial of service, or information disclosure.

ELA-1532-1 libjson-xs-perl security update
[DSA 6016-1] chromium security update




ELA-1532-1 libjson-xs-perl security update


Package : libjson-xs-perl
Version : 3.030-1+deb9u1 (stretch), 3.040-1+deb10u1 (buster)

Related CVEs :
CVE-2025-40928

A vulnerability has been fixed in libjson-xs-perl, a Perl module which does C/XS-accelerated manipulation of JSON-formatted data.

CVE-2025-40928
Integer buffer overflow causing a segfault when parsing crafted JSON,
enabling denial-of-service attacks or other unspecified impact.


ELA-1532-1 libjson-xs-perl security update



[SECURITY] [DSA 6016-1] chromium security update


- -------------------------------------------------------------------------
Debian Security Advisory DSA-6016-1 security@debian.org
https://www.debian.org/security/ Andres Salomon
October 02, 2025 https://www.debian.org/security/faq
- -------------------------------------------------------------------------

Package : chromium
CVE ID : CVE-2025-11205 CVE-2025-11206 CVE-2025-11207 CVE-2025-11208
CVE-2025-11209 CVE-2025-11210 CVE-2025-11211 CVE-2025-11212
CVE-2025-11213 CVE-2025-11215 CVE-2025-11216 CVE-2025-11219

Security issues were discovered in Chromium which could result
in the execution of arbitrary code, denial of service, or information
disclosure.

For the oldstable distribution (bookworm), these problems have been fixed
in version 141.0.7390.54-1~deb12u1.

For the stable distribution (trixie), these problems have been fixed in
version 141.0.7390.54-1~deb13u1.

We recommend that you upgrade your chromium packages.

For the detailed security status of chromium please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/chromium

Further information about Debian Security Advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://www.debian.org/security/