Home

Google Chrome Browser

making the web faster, safer, and easier

Main menu

  • Home
  • Chromebook
  • Chrome OS
  • Android
  • Books
  • Releases
    • Stable
    • Beta channel
    • Dev channel
  • Downloads
  • Videos
    • Top Rated
    • Most Viewed
    • Most Commented
  • Articles
    • Top Rated
    • Most Viewed
    • Most Commented
  • About Us
Home

Add to Technorati Favorites

Subscribe to Google Chrome Browser by e-mail

Delivered by FeedBurner

Syndicate

Syndicate content

User login

Login/Register
What is OpenID?
  • Log in using OpenID
  • Cancel OpenID login
  • Create new account
  • Request new password

Tag Cloud

Beta updates browser browsers browsing chrome chromebook chrome extensions Chrome OS chromium Dev updates Downloads extensions feed Firefox Google google chrome googlechrome Internet Explorer Linux News opera release security Stable updates TC video web web browser web browsers windows
more tags

Twitter Updates

Follow us on Twitter @ChromeBrowser


    Stable, Beta update: Bug fixes

    • View
    • Track
    Submitted by admin on Thu, 07/16/2009 - 13:42
    • Beta updates
    • release
    • Stable updates

     

    [Update: Added CVE numbers for the security issues. --mal@chromium.org, 21 July 2009]

    Google Chrome 2.0.172.37 has been released to the Beta and Stable channels. This release fixes some minor bugs:

    • Fix: Solving captcha images broken at orkut.com. (Issue 15569)
    • Make forward/backward navigation work even when redirection is involved. (Issue 9663, issue 10531)
    • Fix: Daylight savings time not recognized for some CET locales. (Issue 12579)
    • Fix a browser crash on closing a URL request. (Issue 8942)
    • Update the V8 Javascript engine to version 1.1.10.14 to fix issues with regular expressions.
    • Update Gears to the latest release, 0.5.25.0.

    In addition, this release fixes the following security issues:

    CVE-2009-2555 Heap overflow with Javascript regular expressions

    Evaluating a specially-crafted regular expression in Javascript on a web page can lead to memory corruption and possibly a heap overflow. Visiting a maliciously crafted website may lead to a renderer (tab) crash or arbitrary code execution in the Google Chrome sandbox.

    More info: http://code.google.com/p/chromium/issues/detail?id=14719 (This issue will be made public once a majority of users are up to date with the fix.)

    Severity: High. An attacker might be able to run arbitrary code within the Google Chrome sandbox.

    Credit: This issue was found by the Google Chrome security team.

    Mitigations:
    • A victim would need to visit a page under an attacker's control.
    • Any code that an attacker might be able to run inside the renderer process would be inside the sandbox. Click here for more details about sandboxing.



    CVE-2009-2556 Memory corruption in the browser process

    A compromised renderer (tab) process could cause the browser process to allocate very large memory buffers. This error could cause the browser process (and all tabs) to crash or possibly allow arbitrary code execution with the privileges of the logged on user. To exploit this vulnerability, an attacker would need to be able to run arbitrary code inside the renderer process.


    Severity: Critical. In conjunction with a vulnerability allowing arbitrary code to run in the renderer, an attacker might be able to run code with the privileges of the logged on user.

    Credit: This issue was found by the Google Chrome security team.

    Mitigations:
    • A victim would need to visit a page under an attacker's control.
    • The attacker must exploit a second vulnerability to control the renderer process.
    •  

    Google Chrome 2.0.172.37 Windows Installer
    Your rating: None Average: 5 (1 vote)
    • 511 reads
    • Feed: Google Chrome Releases
    • Original article

    Post new comment

    • Web page addresses and e-mail addresses turn into links automatically.
    • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
    • Lines and paragraphs break automatically.
    • E-Mail addresses are hidden with reCAPTCHA Mailhide.
    • You may insert videos with [video:URL]

    More information about formatting options

    CAPTCHA
    This question is for testing whether you are a human visitor and to prevent automated spam submissions.

    Google Chrome Browser is a community site for users and developers of the Google Chrome browser.
    Google™ is a Trademark of Google Inc. All other company and product names may be trademarks of the respective companies with which they are associated.
    Google Chrome Browser site is not affiliated with or sponsored by Google Inc.
    Google Chrome Browser site is built on the Drupal open source content management system.