N3philimUtu Posted October 29, 2022 Report Share Posted October 29, 2022 (edited) Poder elegir el comportamiento del teclado virtual en móviles y el modo de ahorro de energía son algunas de las actualizaciones de Google Chrome 108. El navegador ya se encuentra disponible para ser descargado en la mayoría de dispositivos. La nueva versión trae cambios interesantes, no solo para los usuarios que usan Google Chrome, como navegador predeterminado en sus computadores o dispositivos móviles, sino para los desarrolladores de sitios web. Google ha anunciado la actualización para Android, sin embargo en los próximos días, las personas podrán descargar la última edición en el resto de plataformas, incluyendo iOS, Windows, ChromeOS, macOS y Linux. “Esta versión incluye mejoras de estabilidad y rendimiento. Las versiones de Android contienen las mismas correcciones de seguridad que su versión de escritorio correspondiente (Windows: 108.0.5359.71/.72, Mac y Linux: 108.0.5359.71)”, explica Google. Novedades de Google Chrome 108 Aunque el gigante tecnológico había alertado sobre una posible vulnerabilidad en cuanto a seguridad en las anteriores versiones, con este lanzamiento de Chrome 108 estos problemas ya han sido resueltos y los usuarios estarían fuera de peligro. Uno de los cambios más novedosos de esta edición de Chrome, es que le permitirá a los creadores de sitios web elegir el comportamiento del teclado virtual en móviles. Es decir, el teclado aparecerá sobre el contenido del sitio web. También, los desarrolladores podrán hacer que el contenido cambie de tamaño para adaptarse al espacio existente con el teclado desplegado. Las extensiones de Google Chrome imprescindibles para el 2023 En la nueva versión está incluido el soporte para el formato de fuentes COLRv1. La gran ventaja de este sistema es que permite utilizar emojis y fuentes coloridas ocupando un espacio mínimo. En el caso de Android, hay un diseño nuevo para la barra de búsqueda, esto con el objetivo “de adaptarse al lenguaje de diseño Material 3, los resultados de búsqueda ahora aparecen integrados en tarjetas con esquinas redondeadas”. Al menos así lo afirma Andro4all. Hay que tener en cuenta que este diseño no viene predeterminado; es necesario, “habilitarlo manualmente a través del menú de opciones experimentales o flags. Una vez dentro, hay que activar la opción”. Por último, otra función de Chrome 108 muy útil para los usuarios de Google es el modo de ahorro de energía dirigido a equipos portátiles con Windows o macOS. Silent installation Cita https://www.babup.com/do.php?id=6620 https://workupload.com/file/q2jJygRkFj3 Edited December 14, 2022 by N3philimUtu Link to comment Share on other sites More sharing options...
N3philimUtu Posted November 10, 2022 Author Report Share Posted November 10, 2022 The Stable channel has been updated to 107.0.5304.110 for Mac and Linux and 107.0.5304.106/.107 for Windows, which will roll out over the coming days/weeks. A full list of changes in this build is available in the log. Security Fixes and Rewards Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed. This update includes 10 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Page for more information. [$21000][1377816] High CVE-2022-3885: Use after free in V8. Reported by gzobqq@ on 2022-10-24 [$10000][1372999] High CVE-2022-3886: Use after free in Speech Recognition. Reported by anonymous on 2022-10-10 [$7000][1372695] High CVE-2022-3887: Use after free in Web Workers. Reported by anonymous on 2022-10-08 [$7000][1375059] High CVE-2022-3888: Use after free in WebCodecs. Reported by Peter Nemeth on 2022-10-16 [$TBD][1380063] High CVE-2022-3889: Type Confusion in V8. Reported by anonymous on 2022-11-01 [$TBD][1380083] High CVE-2022-3890: Heap buffer overflow in Crashpad. Reported by anonymous on 2022-11-01 Link to comment Share on other sites More sharing options...
N3philimUtu Posted November 26, 2022 Author Report Share Posted November 26, 2022 The Stable channel has been updated to 107.0.5304.121 for Mac and Linux and 107.0.5304.121/.122 for Windows, which will roll out over the coming days/weeks. A full list of changes in this build is available in the log. Security Fixes and Rewards Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed. This update includes 1 security fix. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Page for more information. [$NA][1392715] High CVE-2022-4135: Heap buffer overflow in GPU. Reported by Clement Lecigne of Google's Threat Analysis Group on 2022-11-22 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel.Google is aware that an exploit for CVE-2022-4135 exists in the wild. Link to comment Share on other sites More sharing options...
N3philimUtu Posted December 1, 2022 Author Report Share Posted December 1, 2022 he Chrome team is delighted to announce the promotion of Chrome 108 to the stable channel for Windows, Mac and Linux. This will roll out over the coming days/weeks. Chrome 108.0.5359.71 ( Mac/linux) and 108.0.5359.71/72( Windows) contains a number of fixes and improvements -- a list of changes is available in the log. Watch out for upcoming Chrome and Chromium blog posts about new features and big efforts delivered in 108. Security Fixes and Rewards Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed. This update includes 28 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Pagefor more information. [$15000][1379054] High CVE-2022-4174: Type Confusion in V8. Reported by Zhenghang Xiao (@Kipreyyy) on 2022-10-27 [$11000][1381401] High CVE-2022-4175: Use after free in Camera Capture. Reported by Leecraso and Guang Gong of 360 Vulnerability Research Institute on 2022-11-04 [$2000][1361066] High CVE-2022-4176: Out of bounds write in Lacros Graphics. Reported by @ginggilBesel on 2022-09-08 [$2000][1379242] High CVE-2022-4177: Use after free in Extensions. Reported by Chaoyuan Peng (@ret2happy) on 2022-10-28 [$NA][1376099] High CVE-2022-4178: Use after free in Mojo. Reported by Sergei Glazunov of Google Project Zero on 2022-10-18 [$NA][1377783] High CVE-2022-4179: Use after free in Audio. Reported by Sergei Glazunov of Google Project Zero on 2022-10-24 [$TBD][1378564] High CVE-2022-4180: Use after free in Mojo. Reported by Anonymous on 2022-10-26 [$TBD][1382581] High CVE-2022-4181: Use after free in Forms. Reported by Aviv A. on 2022-11-09 [$6000][1368739] Medium CVE-2022-4182: Inappropriate implementation in Fenced Frames. Reported by Peter Nemeth on 2022-09-28 [$5000][1251790] Medium CVE-2022-4183: Insufficient policy enforcement in Popup Blocker. Reported by David Sievers on 2021-09-22 [$5000][1358647] Medium CVE-2022-4184: Insufficient policy enforcement in Autofill. Reported by Ahmed ElMasry on 2022-09-01 [$5000][1373025] Medium CVE-2022-4185: Inappropriate implementation in Navigation. Reported by James Lee (@Windowsrcer) on 2022-10-10 [$5000][1377165] Medium CVE-2022-4186: Insufficient validation of untrusted input in Downloads. Reported by Luan Herrera (@lbherrera_) on 2022-10-21 [$5000][1381217] Medium CVE-2022-4187: Insufficient policy enforcement in DevTools. Reported by Axel Chong on 2022-11-04 [$3000][1340879] Medium CVE-2022-4188: Insufficient validation of untrusted input in CORS. Reported by Philipp Beer (TU Wien) on 2022-06-30 [$3000][1344647] Medium CVE-2022-4189: Insufficient policy enforcement in DevTools. Reported by NDevTK on 2022-07-15 [$3000][1378997] Medium CVE-2022-4190: Insufficient data validation in Directory. Reported by Axel Chong on 2022-10-27 [$2000][1373941] Medium CVE-2022-4191: Use after free in Sign-In. Reported by Jaehun Jeong(@n3sk) of Theori on 2022-10-12 [$1000][1344514] Medium CVE-2022-4192: Use after free in Live Caption. Reported by Samet Bekmezci @sametbekmezci on 2022-07-14 [$1000][1354518] Medium CVE-2022-4193: Insufficient policy enforcement in File System API. Reported by Axel Chong on 2022-08-19 [$TBD][1370562] Medium CVE-2022-4194: Use after free in Accessibility. Reported by Anonymous on 2022-10-03 [$NA][1371926] Medium CVE-2022-4195: Insufficient policy enforcement in Safe Browsing. Reported by Eric Lawrence of Microsoft on 2022-10-06 We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel. As usual, our ongoing internal security work was responsible for a wide range of fixes: [1394280] Various fixes from internal audits, fuzzing and other initiatives Many of our security bugs are detected using AddressSanitizer,MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity,libFuzzer, or AFL. Interested in switching release channels? Find out how here. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues. Srinivas Sista Link to comment Share on other sites More sharing options...
N3philimUtu Posted December 8, 2022 Author Report Share Posted December 8, 2022 El canal estable se actualizó a 108.0.5359.98 para Mac y Linux y 108.0.5359.98/.99 para Windows, que se implementará en los próximos días o semanas. Una lista completa de cambios en esta compilación está disponible en el registro. El canal Extended Stable se actualizó a 108.0.5359.99 para Windows y 108.0.5359.98 para Mac, que se implementará en los próximos días o semanas. Link to comment Share on other sites More sharing options...
N3philimUtu Posted December 14, 2022 Author Report Share Posted December 14, 2022 The Stable channel has been updated to 108.0.5359.124 for Mac and Linux and 108.0.5359.124/.125 for Windows, which will roll out over the coming days/weeks. A full list of changes in this build is available in the log. The Extended Stable channel has been updated to 108.0.5359.124 for Mac and 108.0.5359.125 for Windows which will roll out over the coming days/weeks. Security Fixes and Rewards Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed. This update includes 8 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Page for more information. [$7000][1383991] High CVE-2022-4436: Use after free in Blink Media. Reported by Anonymous on 2022-11-15 [$6000][1394692] High CVE-2022-4437: Use after free in Mojo IPC. Reported by koocola(@alo_cook) and Guang Gong of 360 Vulnerability Research Institute on 2022-11-30 [$1500][1381871] High CVE-2022-4438: Use after free in Blink Frames. Reported by Anonymous on 2022-11-07 [$TBD][1392661] High CVE-2022-4439: Use after free in Aura. Reported by Anonymous on 2022-11-22 [$3000][1382761] Medium CVE-2022-4440: Use after free in Profiles. Reported by Anonymous on 2022-11-09 Link to comment Share on other sites More sharing options...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now