红联Linux门户
Linux帮助

Chrome 38稳定版发布

发布时间:2014-10-08 09:01:22来源:红联作者:empast
Chrome 团队宣布 Chrome 38 稳定版发布,最新版本号是 Chrome 38.0.2125.101 ,提供 Windows, Mac 和 Linux 平台版本,包含一些 bug 修复和改进,有:

- 一些新的应用和扩展 API
- 稳定性和性能方面的提升

完整列表请看 log. 此外该版本包含159 个安全问题的修复,主要有:

[$27633.70][416449] Critical CVE-2014-3188: A special thanks to Jüri Aedla for a combination of V8 and IPC bugs that can lead to remote code execution outside of the sandbox.

[$3000][398384] High CVE-2014-3189: Out-of-bounds read in PDFium. Credit to cloudfuzzer.

[$3000][400476] High CVE-2014-3190: Use-after-free in Events. Credit to cloudfuzzer.

[$3000][402407] High CVE-2014-3191: Use-after-free in Rendering. Credit to cloudfuzzer.

[$2000][403276] High CVE-2014-3192: Use-after-free in DOM. Credit to cloudfuzzer.

[$1500][399655] High CVE-2014-3193: Type confusion in Session Management. Credit to miaubiz.

[$1500][401115] High CVE-2014-3194: Use-after-free in Web Workers. Credit to Collin Payne.

[$4500][403409] Medium CVE-2014-3195: Information Leak in V8. Credit to Jüri Aedla.

[$3000][338538] Medium CVE-2014-3196: Permissions bypass in Windows Sandbox. Credit to James Forshaw.

[$1500][396544] Medium CVE-2014-3197: Information Leak in XSS Auditor. Credit to Takeshi Terada.

[$1500][415307] Medium CVE-2014-3198: Out-of-bounds read in PDFium. Credit to Atte Kettunen of OUSPG.

[$500][395411] Low CVE-2014-3199: Release Assert in V8 bindings. Credit to Collin Payne.

来自:开源中国社区
文章评论

共有 0 条评论