Anzeigen der neuesten Beiträge
0 Mitglieder und 6 Gäste betrachten dieses Thema.
The Stable channel has been updated to 23.0.1271.95 for Windows, Mac, Linux, and ChromeFrame platforms.Security fixes and rewards:Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix. [161564] High CVE-2012-5138: Incorrect file path handling. Credit to Google Chrome Security Team (Jüri Aedla). [$7331] [162835] High CVE-2012-5137: Use-after-free in media source handling. Credit to Pinkie Pie.Congratulations to Pinkie Pie for completing challenge: 64-bit exploit.Many of the above bugs were detected using AddressSanitizer.Full details about what changes are in this release are available in the SVN revision log.
15.3.1This update is a bugfix and performance release with a number of security, stability and efficiency fixes:Bugfixes:Fix for font rendering issues on Windows 8 (cairo+azure)Status bar options: Russian locale fixedFix for status bar address bar linkover ghostingFix for browser hang in some WebM video contentDon't allow alert/confirm/prompt in onbeforeunload, onunload and onpagehide (bug# 391834)Improvements:Reduce non-incremental GC occurrences (reduce lag in Javascript)More efficient CPU usage for JS and CanvasPale Moon x64: Performance improvementsSecurity fixes:Security fixes for CVE-2012-5840, CVE-2012-5839, CVE-2012-4210, CVE-2012-4207 and CVE-2012-4214.Fix for methodjit assertion issue (bug #781859)Fix for potentially exploitable crash in XPConnect (bug #809674)Fix for potentially exploitable crash in layout engine (bug #791601)Fix for potentially exploitable crash in JS string handling (bug #778603)Fix for potentially exploitable crash in GIF decoder (bug #789046)Fix for potentially exploitable crash in image decoder (bug #802168)Fix for use-after-free in editor lib (bug #795708)Fix for potentially exploitable crash in SVG (bug #793848)Fix for out-of-bounds read when blurring (bug #783041)Fix for potentially exploitable crash in text editor (bug #798677)Prevent URL spoofing through prompts (bug #700080)