Chrome 56

56.0.2924.76.

51個のSecurity fix

[671102] High CVE-2017-5007: Universal XSS in Blink. Credit to Mariusz Mlynski
[673170] High CVE-2017-5006: Universal XSS in Blink. Credit to Mariusz Mlynski
[668552] High CVE-2017-5008: Universal XSS in Blink. Credit to Mariusz Mlynski
[663476] High CVE-2017-5010: Universal XSS in Blink. Credit to Mariusz Mlynski
[662859] High CVE-2017-5011: Unauthorised file access in Devtools. Credit to Khalil Zhani
[667504] High CVE-2017-5009: Out of bounds memory access in WebRTC. Credit to Sean Stanek and Chip Bradford
[681843] High CVE-2017-5012: Heap overflow in V8. Credit to Gergely Nagy (Tresorit)
[677716] Medium CVE-2017-5013: Address spoofing in Omnibox. Credit to Haosheng Wang (@gnehsoah)
[675332] Medium CVE-2017-5014: Heap overflow in Skia. Credit to sweetchip
[673971] Medium CVE-2017-5015: Address spoofing in Omnibox. Credit to Armin Razmdjou
[666714] Medium CVE-2017-5019: Use after free in Renderer. Credit to Wadih Matar
[673163] Medium CVE-2017-5016: UI spoofing in Blink. Credit to Haosheng Wang (@gnehsoah)
[676975] Medium CVE-2017-5017: Uninitialised memory access in webm video. Credit to danberm
[668665] Medium CVE-2017-5018: Universal XSS in chrome://apps. Credit to Rob Wu
[668653] Medium CVE-2017-5020: Universal XSS in chrome://downloads. Credit to Rob Wu
[663726] Low CVE-2017-5021: Use after free in Extensions. Credit to Rob Wu
[663620] Low CVE-2017-5022: Bypass of Content Security Policy in Blink. Credit to 李普君 of 无声信息技术PKAV Team
[651443] Low CVE-2017-5023: Type confusion in metrics. Credit to the UK’s National Cyber Security Centre (NCSC)
[643951] Low CVE-2017-5024: Heap overflow in FFmpeg. Credit to Paul Mehta
[643950] Low CVE-2017-5025: Heap overflow in FFmpeg. Credit to Paul Mehta
[634108] Low CVE-2017-5026: UI spoofing. Credit to Ronni Skansing

カテゴリー: 未分類 パーマリンク

コメントを残す

メールアドレスが公開されることはありません。 が付いている欄は必須項目です