[German]Google has released Google Chrome 92.0.4515.131 for Windows, Mac and Linux on August 2, 2021. It is an update to version 92 that brings new features, but also fixes 10 vulnerabilities in older browser versions at once.
Advertising
The Google blog has this post with a list of vulnerabilities closed in Chrome 92.0.4515.131 for desktop. Here are some highlighted vulnerabilities that have been fixed.
- [$20000][1227777] High CVE-2021-30590: Heap buffer overflow in Bookmarks. Reported by Leecraso and Guang Gong of 360 Alpha Lab on 2021-07-09
- [$20000][1229298] High CVE-2021-30591: Use after free in File System API. Reported by SorryMybad (@S0rryMybad) of Kunlun Lab on 2021-07-14
- [$10000][1209469] High CVE-2021-30592: Out of bounds write in Tab Groups. Reported by David Erceg on 2021-05-15
- [$5000][1209616] High CVE-2021-30593: Out of bounds read in Tab Strip. Reported by David Erceg on 2021-05-16
- [$N/A][1218468] High CVE-2021-30594: Use after free in Page Info UI. Reported by raven (@raid_akame) on 2021-06-10
- [$1000][1214481] Medium CVE-2021-30596: Incorrect security UI in Navigation. Reported by Mohit Raj (shadow2639) on 2021-05-29
- [$TBD][1232617] Medium CVE-2021-30597: Use after free in Browser UI. Reported by raven (@raid_akame) on 2021-07-24
Additional issues were tracked down and fixed internally through audits and fuzzing. The Chrome version for Windows, Mac and Linux will be rolled out to the systems via the automatic update function in the next few days. There will also be this app version for Android. Bleeping Computer writes here, that the indicator for secure websites is no longer displayed in the address bar. The latest build of the Chrome browser can also be downloaded here.
Advertising