12
Chrome came out 21
by admin ·
Google has introduced a web-release of the Chrome browser 21, available for the platforms Linux, Mac OS X and Windows. The browser is built on the code base open source project Chromium and use different logos Google, built-in support for Flash and PDF, the presence of a system to send notifications in case of failure, the system automatically install updates, and sending the search RLZ-parameters.
Major improvements:
- Support of certain properties of the open protocol WebRTC. Thanks getUserMedia API, for example, a Web-based applications can now access the camera and microphone directly, without third-party plug-ins.
- Was supported by Retina-display the new MacBook Pro.
- Support for the organization Gamepad API entry through the gaming console.
- New dialog to print , which adds support for printing via the service Google Cloud Print, the ability to save PDF to Google Drive, pass on your mobile device, or printed in one of the 1,800 offices of FedEx.
In addition to new features and bug fixes, the new version removed 15 vulnerabilities, of which 6 are labeled as hazardous, 5 – moderate and 3 – slight. One of the vulnerabilities found in the handling of tabs, given the status of critical issues, which allows you to bypass all security levels browser. The above critical vulnerability revealed a Google employee, and appears only on Linux. Of the vulnerabilities that have the status of hazardous, it is possible to note an integer overflow, the output of the boundaries of the buffer, and an appeal to the already freed memory in the embedded viewer PDF, a buffer overflow in the decoder WebP, an appeal to the freed memory block in the code of CSS DOM.
Many of the fixed vulnerabilities identified by instruments address-sanitizer, designed for the automated determination of the facts refer to the liberated areas of memory, going beyond the boundaries of allocated buffer and some other types of errors when working with memory. As part of the payment of remuneration for the detection of vulnerabilities for the current release, Google has paid security researchers two prizes of 1000 USD.
You can download it here .
