자 료 실

서버 / IT Google Chrome 28.0.1500.71 Stable

2013.07.10 01:55

마이크로닉스 조회:4704

https://dl.google.com/chrome/win/28.0.1500.71_chrome_installer.exe


TUESDAY, JULY 9, 2013

Stable Channel Update

The Stable channel has been updated to 28.0.1500.71 for Windows, Macintosh and Chrome Frame platforms.

Security fixes and rewards:


Please see the Chromium security page for more information. (Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix.)


This automatic update includes security fixes. We’d like to highlight the following fixes for various reasons (crediting external researchers, issuing rewards, or highlighting particularly interesting issues):


  • [$21,500] A special reward for Andrey Labunets for his combination of CVE-2013-2879 and CVE-2013-2868 along with some (since fixed) server-side bugs.
  • [252216] Low CVE-2013-2867: Block pop-unders in various scenarios.
  • [252062] High CVE-2013-2879: Confusion setting up sign-in and sync. Credit to Andrey Labunets.
  • [252034] Medium CVE-2013-2868: Incorrect sync of NPAPI extension component. Credit to Andrey Labunets.
  • [245153] Medium CVE-2013-2869: Out-of-bounds read in JPEG2000 handling. Credit to Felix Groebert of Google Security Team.
  • [$6267.4] [244746] [242762] Critical CVE-2013-2870: Use-after-free with network sockets. Credit to Collin Payne.
  • [$3133.7] [244260] Medium CVE-2013-2853: Man-in-the-middle attack against HTTP in SSL. Credit to Antoine Delignat-Lavaud and Karthikeyan Bhargavan from Prosecco at INRIA Paris.
  • [$2000] [243991] [243818] High CVE-2013-2871: Use-after-free in input handling. Credit to miaubiz.
  • [Mac only] [242702] Low CVE-2013-2872: Possible lack of entropy in renderers. Credit to Eric Rescorla.
  • [$1000] [241139] High CVE-2013-2873: Use-after-free in resource loading. Credit to miaubiz.
  • [Windows + NVIDIA only] [$500] [237611] Medium CVE-2013-2874: Screen data leak with GL textures. Credit to “danguafer”.
  • [$500] [233848] Medium CVE-2013-2875: Out-of-bounds-read in SVG. Credit to miaubiz.
  • [229504] Medium CVE-2013-2876: Extensions permissions confusion with interstitials. Credit to Dev Akhawe.
  • [229019] Low CVE-2013-2877: Out-of-bounds read in XML parsing. Credit to Aki Helin of OUSPG.
  • [196636] None: Remove the “viewsource” attribute on iframes. Credit to Collin Jackson.
  • [177197] Medium CVE-2013-2878: Out-of-bounds read in text handling. Credit to Atte Kettunen of OUSPG.


In addition, our ongoing internal security work was as usual responsible for a wide range of fixes:
  • [256985] High CVE-2013-2880: Various fixes from internal audits, fuzzing and other initiatives (Chrome 28).


Full details about what changes are in this build are available in the SVN revision log and the Chrome Chrome Blog. Interested in switching release channels? Find out how. If you find a new issue, please let us know by filing a bug.

Anthony Laforge

Google Chrome
번호 제목 글쓴이 조회 추천 등록일
[공지] 저작권 보호 요청 자료 목록 gooddew - - -
[공지] 자료실 이용간 유의사항 gooddew - - -
1505 유틸리티| [안드로이드] SnStar Browser에 앞으로 광고를 탑재하지 않... [6] Star★Bros 3754 0 07-20
1504 유틸리티| [링크] Auslogics BoostSpeed 6 [3] KEY 7513 1 07-17
1503 윈도우 / PE| GPT 신규 설치용 배치파일 (3차 수정판) [17] DarknessAn 6311 4 07-17
1502 맨살링 런처 프로그램 -pe도 가능할꺼 같은데 테스트는 안... [1] 굿듀님스토 5669 1 07-17
1501 Nate 4.1.24.0 Portable [2] DarknessAn 4170 2 07-15
1500 Internet Explorer 9 Portable [2] DarknessAn 9717 0 07-15
1499 유틸리티| WinRAR 5.00 beta 7 [9] Novastarhe 5378 4 07-14
1498 유틸리티| 백업툴 고스트 (Ghost32bit, 64bit) [8] 매니안 13311 5 07-13
1497 서버 / IT| 오프라인용 Google Chrome 28.0.1500.72 Stable 마이크로닉 4446 0 07-13
1496 유틸리티| HDD Low Level Format Tool v4.25 [6] 매니안 5185 3 07-12
1495 문서 / 업무| MS가 공식 지원하는 office 2007 에서 PDF 저장 매니안 6566 2 07-12
1494 KakaoTalk V1.0.2.306 Portable [9] DarknessAn 5854 4 07-11
1493 PhotoScape v3.6.5 [5] 이가이버 5026 1 07-11
1492 미디어| 푸바2000 v1.2.9 스마트(SMART 4830 1 07-10
1491 유틸리티| diskcryptor DarknessAn 3289 0 07-10
1490 유틸리티| FancyCache [11] DarknessAn 5163 1 07-10
1489 유틸리티| Wconfig [2] DarknessAn 3019 1 07-10
» 서버 / IT| Google Chrome 28.0.1500.71 Stable 마이크로닉 4704 0 07-10
1487 미디어| PotMPC Lite 20130709 업데이트 되었습니다. [1] 마이크로닉 5955 2 07-10
1486 GomPlayer Portable (새버전) [11] DarknessAn 5498 2 07-08
XE1.11.6 Layout1.4.8