{"id":192613,"date":"2017-07-26T03:15:08","date_gmt":"2017-07-26T01:15:08","guid":{"rendered":"http:\/\/www.borncity.com\/blog\/?p=192613"},"modified":"2022-11-08T08:20:24","modified_gmt":"2022-11-08T07:20:24","slug":"google-chrome-60-fr-linux-mac-windows","status":"publish","type":"post","link":"https:\/\/borncity.com\/blog\/2017\/07\/26\/google-chrome-60-fr-linux-mac-windows\/","title":{"rendered":"Google Chrome 60 f&uuml;r Linux, Mac &amp; Windows"},"content":{"rendered":"<p><img decoding=\"async\" style=\"float: left; margin: 0px 10px 0px 0px; display: inline\" src=\"https:\/\/borncity.com\/blog\/wp-content\/uploads\/2015\/01\/Chrome.jpg\"\/>Google hat die Version 60 seines Chrome-Browsers f\u00fcr Linux, Mac und Windows freigegeben. Die Version enth\u00e4lt 40 Sicherheitsfixes und bringt f\u00fcr Entwickler zahlreiche neue API-Funktionen.<\/p>\n<p><!--more--><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" alt=\"\" src=\"https:\/\/ssl-vg03.met.vgwort.de\/na\/b0970786b31b4fa0b2952963c96741d9\" width=\"1\" height=\"1\"\/>Die gr\u00f6\u00dfte Neuerung ist wohl das Paint Timing API, welches Entwicklern die Messung der Zeit zum Anzeigen einer Webseite erm\u00f6glicht. Weiterhin kann ein Entwickler vorgeben, dass Chrome die Standard-Fonts des Betriebssystems verwendet. Die Ank\u00fcndigung vom 25. Juli 2017 f\u00fcr Chrome 60.0.3112.78 findet sich im <a href=\"https:\/\/chromereleases.googleblog.com\/\" target=\"_blank\" rel=\"noopener\">Chrome-Blog<\/a>. Hier die Liste der Sicherheitsfixes.<\/p>\n<p>[$10000][<a href=\"https:\/\/crbug.com\/728887\">728887<\/a>]<strong> High <\/strong>CVE-2017-5091: Use after free in IndexedDB. <em>Reported by Ned Williamson on 2017-06-02<\/em>  <\/p>\n<p>[$5000][<a href=\"https:\/\/crbug.com\/733549\">733549<\/a>]<strong> High <\/strong>CVE-2017-5092: Use after free in PPAPI. <em>Reported by Yu Zhou, Yuan Deng of Ant-financial Light-Year Security Lab (\u8682\u8681\u91d1\u670d\u5df4\u65af\u5149\u5e74\u5b89\u5168\u5b9e\u9a8c\u5ba4) on 2017-06-15<\/em>  <\/p>\n<p>[$3000][<a href=\"https:\/\/crbug.com\/550017\">550017<\/a>]<strong> High <\/strong>CVE-2017-5093: UI spoofing in Blink. <em>Reported by Luan Herrera on 2015-10-31<\/em>  <\/p>\n<p>[$1000][<a href=\"https:\/\/crbug.com\/702946\">702946<\/a>]<strong> High <\/strong>CVE-2017-5094: Type confusion in extensions. <em>Reported by Anonymous on 2017-03-19<\/em>  <\/p>\n<p>[$1000][<a href=\"https:\/\/crbug.com\/732661\">732661<\/a>]<strong> High <\/strong>CVE-2017-5095: Out-of-bounds write in PDFium. <em>Reported by Anonymous on 2017-06-13<\/em>  <\/p>\n<p>[$TBD][<a href=\"https:\/\/crbug.com\/714442\">714442<\/a>]<strong> High <\/strong>CVE-2017-5096: User information leak via Android intents. <em>Reported by Takeshi Terada on 2017-04-23<\/em>  <\/p>\n<p>[$TBD][<a href=\"https:\/\/crbug.com\/740789\">740789<\/a>]<strong> High <\/strong>CVE-2017-5097: Out-of-bounds read in Skia. <em>Reported by Anonymous on 2017-07-11<\/em>  <\/p>\n<p>[$TBD][<a href=\"https:\/\/crbug.com\/740803\">740803<\/a>]<strong> High <\/strong>CVE-2017-5098: Use after free in V8. <em>Reported by Jihoon Kim on 2017-07-11<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/733548\">733548<\/a>]<strong> High <\/strong>CVE-2017-5099: Out-of-bounds write in PPAPI. <em>Reported by Yuan Deng, Yu Zhou of Ant-financial Light-Year Security Lab (\u8682\u8681\u91d1\u670d\u5df4\u65af\u5149\u5e74\u5b89\u5168\u5b9e\u9a8c\u5ba4) on 2017-06-15<\/em>  <\/p>\n<p>[$2000][<a href=\"https:\/\/crbug.com\/718292\">718292<\/a>]<strong> Medium <\/strong>CVE-2017-5100: Use after free in Chrome Apps. <em>Reported by Anonymous on 2017-05-04<\/em>  <\/p>\n<p>[$1000][<a href=\"https:\/\/crbug.com\/681740\">681740<\/a>]<strong> Medium <\/strong>CVE-2017-5101: URL spoofing in OmniBox. <em>Reported by Luan Herrera on 2017-01-17<\/em>  <\/p>\n<p>[$1000][<a href=\"https:\/\/crbug.com\/727678\">727678<\/a>]<strong> Medium <\/strong>CVE-2017-5102: Uninitialized use in Skia. <em>Reported by Anonymous on 2017-05-30<\/em>  <\/p>\n<p>[$500][<a href=\"https:\/\/crbug.com\/726199\">726199<\/a>]<strong> Medium <\/strong>CVE-2017-5103: Uninitialized use in Skia. <em>Reported by Anonymous on 2017-05-25<\/em>  <\/p>\n<p>[$500][<a href=\"https:\/\/crbug.com\/729105\">729105<\/a>]<strong> Medium <\/strong>CVE-2017-5104: UI spoofing in browser. <em>Reported by Khalil Zhani on 2017-06-02<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/742407\">742407<\/a>] <strong>Medium <\/strong>CVE-2017-7000: Pointer disclosure in SQLite. <em>Reported by Chaitin Security Research Lab (@ChaitinTech) working with Trend Micro's Zero Day Initiative<\/em>  <\/p>\n<p>[$1000][<a href=\"https:\/\/crbug.com\/729979\">729979<\/a>]<strong> Low <\/strong>CVE-2017-5105: URL spoofing in OmniBox. <em>Reported by Rayyan Bijoora on 2017-06-06<\/em>  <\/p>\n<p>[$TBD][<a href=\"https:\/\/crbug.com\/714628\">714628<\/a>]<strong> Medium <\/strong>CVE-2017-5106: URL spoofing in OmniBox. <em>Reported by Jack Zac on 2017-04-24<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/686253\">686253<\/a>]<strong> Low <\/strong>CVE-2017-5107: User information leak via SVG. <em>Reported by David Kohlbrenner of UC San Diego on 2017-01-27<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/695830\">695830<\/a>]<strong> Low <\/strong>CVE-2017-5108: Type confusion in PDFium. <em>Reported by Guang Gong of Alpha Team, Qihoo 360 on 2017-02-24<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/710400\">710400<\/a>]<strong> Low <\/strong>CVE-2017-5109: UI spoofing in browser. <em>Reported by Jos\u00e9 Mar\u00eda Acu\u00f1a Morgado on 2017-04-11<\/em>  <\/p>\n<p>[$N\/A][<a href=\"https:\/\/crbug.com\/717476\">717476<\/a>]<strong> Low <\/strong>CVE-2017-5110: UI spoofing in payments dialog. <em>Reported by xisigr of Tencent's Xuanwu Lab on 2017-05-02<\/em>  <\/p>\n<p>Details zu Verbesserungen finden sich z.B. in <a href=\"https:\/\/web.archive.org\/web\/20220724110422\/https:\/\/www.bleepingcomputer.com\/news\/google\/google-chrome-60-released-for-linux-mac-and-windows\/\" target=\"_blank\" rel=\"noopener\">diesem Bleeping-Computer-Beitrag<\/a> \u2013 ein paar Details gibt es auch <a href=\"http:\/\/it-blogger.net\/post\/Google-Chrome-60-fuer-Desktop-ist-ab-sofort-erhaeltlich.aspx\" target=\"_blank\" rel=\"noopener\">hier<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Google hat die Version 60 seines Chrome-Browsers f\u00fcr Linux, Mac und Windows freigegeben. Die Version enth\u00e4lt 40 Sicherheitsfixes und bringt f\u00fcr Entwickler zahlreiche neue API-Funktionen.<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[1356],"tags":[984],"class_list":["post-192613","post","type-post","status-publish","format-standard","hentry","category-google-chrome-internet","tag-google-chrome"],"_links":{"self":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/192613","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/comments?post=192613"}],"version-history":[{"count":0,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/posts\/192613\/revisions"}],"wp:attachment":[{"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/media?parent=192613"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/categories?post=192613"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/borncity.com\/blog\/wp-json\/wp\/v2\/tags?post=192613"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}