자유 게시판

크롬 37 업데이트~

2014.08.27 10:20

마스크 조회:1066

아무래도 가장 큰 변화는

GDI 폰트를 버리고 다이렉트 라이트로 폰트를 처리하는 것이 큰 변화네요.


폰트 처리 변경에 대한 크롬 뉴스

https://www.itworld.co.kr/news/88587


버그 발견하면 돈주는건 여전히 진행중

Stable Channel Update

The Chrome team is delighted to announce the promotion of Chrome 37 to the stable channel for Windows, Mac and Linux. Chrome 37.0.2062.94 contains a number of fixes and improvements, including:

 - DirectWrite support on Windows for improved font rendering
 - A number of new apps/extension APIs
 - Lots of under the hood changes for stability and performance

A full list of changes is available in the log.

Security Fixes and Rewards

Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.

This update includes 50 security fixes. Below, we highlight fixes that were either contributed by external researchers or particularly interesting. Please see the Chromium security page for more information.

[$30000][386988] Critical CVE-2014-3176, CVE-2014-3177: A special reward to lokihardt@asrt for a combination of bugs in V8, IPC, sync, and extensions that can lead to remote code execution outside of the sandbox.
[$2000][369860] High CVE-2014-3168: Use-after-free in SVG. Credit to cloudfuzzer.
[$2000][387389] High CVE-2014-3169: Use-after-free in DOM. Credit to Andrzej Dyjak.
[$1000][390624] High CVE-2014-3170: Extension permission dialog spoofing. Credit to Rob Wu.
[$4000][390928] High CVE-2014-3171: Use-after-free in bindings. Credit to cloudfuzzer.
[$1500][367567] Medium CVE-2014-3172: Issue related to extension debugging. Credit to Eli Grey.
[$2000][376951] Medium CVE-2014-3173: Uninitialized memory read in WebGL. Credit to jmuizelaar.
[$500][389219] Medium CVE-2014-3174: Uninitialized memory read in Web Audio. Credit to Atte Kettunen from OUSPG.

We would also like to thank Collin Payne, Christoph Diehl, Sebastian Mauer, Atte Kettunen, and cloudfuzzer for working with us during the development cycle to prevent security bugs from ever reaching the stable channel. $8000 in additional rewards were issued.

As usual, our ongoing internal security work responsible for a wide range of fixes:
[406143] CVE-2014-3175: Various fixes from internal audits, fuzzing and other initiatives (Chrome 37).

Many of the above bugs were detected using AddressSanitizer.

Interested in switching release channels? Find out how. If you find a new issue, please let us know by filing a bug.
번호 제목 글쓴이 조회 등록일
[공지] 자유 게시판 이용간 유의사항 (정치, 종교, 시사 게시물 자제) [1] gooddew - -
15275 배달의 민족 새 광고 재밌네요 ㅎ [1] 오호잉 1067 09-02
15274 어제 LAA 선수들 많이 괴로웠을 것.. [3] 고양이2 1067 08-09
15273 에어로글래스 8.1 update1 용이 나왔던데... [5] bleach 1067 05-12
15272 혹시 이자료 괜찮은가요....? [1] 교과서 1067 05-02
15271 xp... 저는 심각하다고... [2] 파랑주의보 1067 04-10
15270 3km 상공 외줄타기 [1] DOS 1067 02-15
15269 윈포의 약자는 저 아닌가요? [4] 파랑주의보 1067 09-29
15268 제가 얼마전에 올렸던 게시글 입니다. [9] 정랑고개 1067 06-25
15267 알리 익스프레스에서 산 전자제품은 불량품이거나 고장나면? [8] 복두꺼비 1067 01-06
15266 스마트폰... [2] 유체이탈 1067 10-29
15265 추석때 저 처럼 일한신분들도 계시겠죠?^^* [4] 주롱 1067 09-13
15264 넉넉하고 풍요로운 한가위 보내시기 바랍니다. [3] 뚜버기 1067 09-09
15263 무선인터넷 루트 질문 [2] 박종환 1067 10-25
15262 Samsung무제한 무료 임시 클라우드 스토리지 [1] 4k8k 1066 12-04
15261 [배포예정]W11_22621_1413_CUSTOM(GAME) [77] 우인 1066 03-15
15260 테라박스... [7] 내꼬 1066 02-20
15259 이러면 여자들이 안좋아 할까여 ㄷㄷㄷㄷ [12] 선우 1066 03-17
15258 컴퓨터 소음 문제 [11] 긍지버림 1066 11-08
15257 맘에 안드네...맘에 안들어...흠... [1] 메인보드 1066 03-10
15256 작품명 : 키스 한결맘 1066 03-28
XE1.11.6 Layout1.4.8