Corrective release of Chrome 77.0.3865.90 addressing a critical vulnerability.

Available Update of the Chrome browser 77.0.3865.90, which fixes four vulnerabilities, one of which has been classified as critical, allowing bypassing all levels of browser protection and executing code on the system outside the sandbox environment. Details about the critical vulnerability (CVE-2019-13685) are not yet disclosed. not disclosed, it is only known that it is caused by accessing already freed memory blocks in handlers related to the user interface (access to information will be opened after a majority of users install the update).

The other three vulnerabilities are categorized as serious. The issues are also caused by accessing already freed memory blocks (Use-after-free) in the handling code of offline pages (CVE-2019-13686) and multimedia data (CVE-2019-13687, CVE-2019-13688). Researchers who identified the problems in the multimedia handlers received rewards of $20,000 each from Google for each vulnerability. The reward for the other two vulnerabilities has not yet been determined.

Source: opennet.ru

Buy reliable website hosting with DDoS protection, VPS VDS servers 🔥 Buy reliable website hosting with DDoS protection, VPS VDS servers | ProHoster