This update contains a number of stability fixes, including an issue with multiple profiles on Mac OS X 10.8.2. It also contains a fix for text display on the Mac, as well as the security updates listed below. Security fixes and rewards: Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix. [$1000] [138208] High CVE-2012-2900: Crash in Skia text rendering. Credit to Atte Kettunen of OUSPG. [$3133.7] [147499] Critical CVE-2012-5108: Race condition in audio device handling. Credit to Atte Kettunen of OUSPG. [$500] [148692] Medium CVE-2012-5109: OOB read in ICU regex. Credit to Arthur Gerkis. [151449] Medium CVE-2012-5110: Out-of-bounds read in compositor. Credit to Google Chrome Security Team (Inferno). [151895] Low CVE-2012-5111: Plug-in crash monitoring was missing for Pepper plug-ins. Credit to Google Chrome Security Team (Chris Evans).
The Dev channel has been updated to 24.0.1290.1 for Windows, Mac, Linux, and Chrome Frame. This build contains following updates: All - Fixed issue where clearing browse data never completes with PPAPI flash plugin disabled. [Issue: 144874] - Fixed issue in disabling sync for default apps. [Issue: 152582] - Fixed crashes 154167, 153902, 152622. Known Issues - Issue 154663: On Windows 8, if Chrome is set to use Windows 8 mode, it might launch in Windows 8 mode when trying to uninstall (and therefore fail to uninstall). Workaround: make another browser default (in Control Panel -> Default Programs) and then uninstall Chrome. Full details about what changes are in this build are available in the SVN revision log.
The Chrome team is excited to announce the release of Chrome 23 to the Stable Channel. 23.0.1271.64 for Windows, Mac, Linux, and Chrome Frame. Chrome 23 contains a number of new features including GPU accelerated video decoding on Windows and easier website permissions. More detailed updates are available on the Chrome Blog.
Security fixes and rewards: Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix.
Occasionally, we issue special rewards for bugs outside of Chrome, particularly where the bug is very severe and/or we are able to partially work around the issue: - [Mac OS only] [$1000] [149904] High CVE-2012-5115: Defend against wild writes in buggy graphics drivers. Credit to miaubiz.
And back to your regular scheduled rewards, including some at the new higher levels: - [$3500] [157079] Medium CVE-2012-5127: Integer overflow leading to out-of-bounds read in WebP handling. Credit to Phil Turnbull. - [Linux 64-bit only] [$1500] [150729] Medium CVE-2012-5120: Out-of-bounds array access in v8. Credit to Atte Kettunen of OUSPG. - [$1000] [143761] High CVE-2012-5116: Use-after-free in SVG filter handling. Credit to miaubiz. - [Mac OS only] [$1000] [149717] High CVE-2012-5118: Integer bounds check issue in GPU command buffers. Credit to miaubiz. - [$1000] [154055] High CVE-2012-5121: Use-after-free in video layout. Credit to Atte Kettunen of OUSPG. - [145915] Low CVE-2012-5117: Inappropriate load of SVG subresource in img context. Credit to Felix Gröbert of the Google Security Team. - [149759] Medium CVE-2012-5119: Race condition in Pepper buffer handling. Credit to Fermin Serna of the Google Security Team. - [154465] Medium CVE-2012-5122: Bad cast in input handling. Credit to Google Chrome Security Team (Inferno). - [154590] [156826] Medium CVE-2012-5123: Out-of-bounds reads in Skia. Credit to Google Chrome Security Team (Inferno). - [155323] High CVE-2012-5124: Memory corruption in texture handling. Credit to Al Patrick of the Chromium development community. - [156051] Medium CVE-2012-5125: Use-after-free in extension tab handling. Credit to Alexander Potapenko of the Chromium development community. - [156366] Medium CVE-2012-5126: Use-after-free in plug-in placeholder handling. Credit to Google Chrome Security Team (Inferno). - [157124] High CVE-2012-5128: Bad write in v8. Credit to Google Chrome Security Team (Cris Neckar).
Google Chrome v23.0.1271.64 Standalone Enterprise
2012-11-06
This msi installer is not having any options and will install Chrome web browser directly at C:\Program Files\Google. Thus, making Google Chrome available for all users, accessible through the Start Menu.
The Beta channel has been updated to 24.0.1312.52 for Windows, Mac, Linux, and Chrome Frame. This build contains security fixes and an update to flash.
The Stable channel has been updated to 24.0.1312.56 for Windows, Mac, Linux, and Chrome Frame platforms. This build contains the following fixes: - Fixed performance of mouse wheel scrolling. [Issue: 160122] - Fixed visited links regression. [Issue: 160025] - Fixed windows installation when installed as admin. [Issue: 166473]
Security fixes and rewards: Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix. - [$1000] [151008] High CVE-2013-0839: Use-after-free in canvas font handling. Credit to Atte Kettunen of OUSPG. - [170532] Medium CVE-2013-0840: Missing URL validation when opening new windows. - [169770] High CVE-2013-0841: Unchecked array index in content blocking. Credit to Google Chrome Security Team (Chris Evans). - [166867] Medium CVE-2013-0842: Problems with NULL characters embedded in paths. Credit to Google Chrome Security Team (Jüri Aedla). - [Mac only] [166523] High CVE-2013-0843: Crash with unsupported RTC sampling rate. Credit to Ted Nakamura of the Chromium development community.
The Stable channel has been updated to 24.0.1312.57 for Windows, Mac, Linux, and Chrome Frame. This build contains the following fixes:
- Mac: r177690 Fix renderer crashes when using certain IMEs. (Issue 152566) - Mac: r178517 Fix microphone input dropout with Pepper Flash. (Issue 168859) - Chrome Frame: r178591 Fix renderer exiting in certain cases when opening a new Window from Chrome Frame. (Issue 171877)
Full details about what changes are in this build are available in the SVN revision log.
The Beta channel has been updated to 25.0.1364.84 for Windows, Mac, Linux, and Chrome Frame. This build contains improvements in stability and performance.