Windows 7 Forums


Windows 7: Critical and High Vulnerabilities Patched in Chrome

21 Aug 2010   #1
JMH

Win 7 Ultimate 64-bit. SP1.
 
 
Critical and High Vulnerabilities Patched in Chrome

Quote:

Google has released new security updates through the Chrome stable channel in order to address several critical and high risk vulnerabilities, two of which were rewarded with special $1,337 prizes.

The new 5.0.375.127 update is still silently being pushed to users, so details about some of the fixed bugs were temporarily withheld from the general public for security reasons.

Nevertheless, Google lists two critical, six high and one moderate flaws in an announcement on its Chrome Releases blog.

Both critical issues, described as a "memory corruption with file dialog" and a "crash on shutdown due to notifications bug," were discovered by a security researcher named Sergey Glazunov, who received $1,337 for each.

The high risk bugs referred to: a "memory corruption with SVGs" and "bad cast with text editing," both discovered by wushi of team509; a "possible address bar spoofing with history," credited to Mike Taylor; a "memory corruption in MIME type handling," also found by Mr. Glazunov; a "memory corruption with Ruby support" and "memory corruption with Geolocation support" discovered by kuzzcc.

The security issue rated as medium risk was reported by reputed Web application security researcher Robert "RSnake" Hansen and can be used to "stop omnibox autosuggest if the user might be about to type a password."

More -
Critical and High Vulnerabilities Patched in Chrome - - Softpedia

My System SpecsSystem Spec

22 Aug 2010   #2

Windows 7 Professional x64 SP1
Calgary
 
 

Love the $1,337 prizes. Very cute, Google.
My System SpecsSystem Spec
Reply

 Critical and High Vulnerabilities Patched in Chrome problems?



Thread Tools



Similar help and support threads for: Critical and High Vulnerabilities Patched in Chrome
Thread Forum
Patch: critical Java security vulnerabilities Security News
Vulnerabilities Patched in McAfee SaaS for Total Protection Security News
Google Chrome Patched Against Zero-Day Flash Vulnerability Security News
Flurry of Critical Vulnerabilities Patched in RealPlayer Security News
Popular Apps with Critical Security Vulnerabilities System Security


All times are GMT -5. The time now is 12:41 PM.


Seven Forums Android App Seven Forums IOS App Follow us on Facebook

Windows 7 Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows 7" and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd
  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32