Google heeft de eerste stabiele uitgave van versie 13 van zijn webbrowser Chrome uitgebracht. Google Chrome is beschikbaar in drie verschillende uitvoeringen: stable, bèta en dev. Developmentversies zitten in een vroeg stadium van ontwikkeling en zijn dus het minst stabiel. Nieuw in versie 13 is onder andere Instant Pages, wat inhoudt dat het eerste resultaat in een zoekmachine alvast op de achtergrond wordt geladen voordat dit wordt gekozen. Verder is de omnibox verbeterd en is print preview toegevoegd, een feature waar sinds 2008 om werd gevraagd. Natuurlijk zijn er ook weer de nodige bugfixes en beveiligingsupdates doorgevoerd.
Stable Channel Update
The Google Chrome team is pleased to announce the arrival of Chrome 13.0.782.107 to the Stable Channel for Windows, Mac, Linux, and Chrome Frame. Spanning 5200+ revisions, Chrome 13 contains some exciting new features like Instant Pages prerendering technology. To find out about other new features, check out the Official Chrome Blog.
Security fixes and rewards:
Please see the Chromium security page for more detail. Note that the referenced bugs may be kept private until a majority of our users are up to date with the fix.
- Medium CVE-2011-2358: Always confirm an extension install via a browser dialog.
- High CVE-2011-2359: Stale pointer due to bad line box tracking in rendering.
- Low CVE-2011-2360: Potential bypass of dangerous file prompt.
- Low CVE-2011-2361: Improve designation of strings in the basic auth dialog.
- Medium CVE-2011-2782: File permissions error with drag and drop.
- Medium CVE-2011-2783: Always confirm a developer mode NPAPI extension install via a browser dialog.
- Low CVE-2011-2784: Local file path disclosure via GL program log.
- Low CVE-2011-2785: Sanitize the homepage URL in extensions.
- Low CVE-2011-2786: Make sure the speech input bubble is always on-screen.
- Medium CVE-2011-2787: Browser crash due to GPU lock re-entrancy issue.
- Low CVE-2011-2788: Buffer overflow in inspector serialization.
- Medium CVE-2011-2789: Use after free in Pepper plug-in instantiation.
- High CVE-2011-2790: Use-after-free with floating styles.
- High CVE-2011-2791: Out-of-bounds write in ICU.
- High CVE-2011-2792: Use-after-free with float removal.
- High CVE-2011-2793: Use-after-free in media selectors.
- Medium CVE-2011-2794: Out-of-bounds read in text iteration.
- Medium CVE-2011-2795: Cross-frame function leak.
- High CVE-2011-2796: Use-after-free in Skia.
- High CVE-2011-2797: Use-after-free in resource caching.
- Low CVE-2011-2798: Prevent a couple of internal schemes from being web accessible.
- High CVE-2011-2799: Use-after-free in HTML range handling.
- Medium CVE-2011-2800: Leak of client-side redirect target.
- High CVE-2011-2802: v8 crash with const lookups.
- Medium CVE-2011-2803: Out-of-bounds read in Skia paths.
- High CVE-2011-2801: Use-after-free in frame loader.
- High CVE-2011-2818: Use-after-free in display box rendering.
- High CVE-2011-2804: PDF crash with nested functions.
- High CVE-2011-2805: Cross-origin script injection.
- High CVE-2011-2819: Cross-origin violation in base URI handling.