Sakin Chrome 145

Google ya fitar da sigar 145 ta burauzar yanar gizo ta Chrome. Haka kuma akwai wani sabon tsari na aikin Chromium mai tushe, tushen Chrome. Chrome ya bambanta da Chromium a amfani da tambarin Google, tsarin sanarwar hatsarinsa, kayan aiki don kunna abun ciki na bidiyo mai kariya daga kwafi (DRM), shigarwar sabuntawa ta atomatik, keɓewar sandbox koyaushe, samar da maɓallan Google API, da kuma amfani da sigogin RLZ yayin bincike. Ga waɗanda ke buƙatar ƙarin lokaci don sabuntawa, ana kiyaye wani reshe na Extended Stable na tsawon makonni takwas. Fitowa ta gaba, Chrome 146, an shirya shi a ranar 10 ga Maris.

Canje-canje masu mahimmanci a cikin Chrome 145:

  • An ƙara tallafi ga tsarin hoton JPEG XL, an fassara shi ta amfani da ɗakin karatu na jxl-rs tare da aiwatar da JPEG-XL na Rust. A halin yanzu ana kashe tallafin JPEG XL ta hanyar tsoho kuma yana buƙatar kunna saitin "chrome://flags/#enable-jxl-image-format".
  • Mun ci gaba da haɓaka yanayin AI, wanda ke ba ku damar yin hulɗa da wakilin AI daga sandar adireshi ko daga shafin da aka nuna lokacin da kuka buɗe sabon shafin. Yanayin AI yana ba ku damar yin tambayoyi masu rikitarwa a cikin harshen halitta kuma ku sami amsoshi bisa ga tarin bayanai daga shafuka mafi dacewa akan wani batu. Idan ya cancanta, mai amfani zai iya fayyace bayanin tare da tambayoyi masu jagora. Yanayin kuma yana ba ku damar yin tambayoyi game da abubuwan shafi kai tsaye daga sandar adireshi. A cikin Chrome 145, yanayin AI yana samuwa don Android da iOS. Ga masu amfani a Kanada, Indiya, da New Zealand, yanzu ana kunna Gemini chatbot ta tsohuwa (lokacin amfani da Turanci).
  • An ƙara tsarin DBSC (Na'urar da ke da Takaddun Shaidar Zaman da aka Haɗa), wanda ke ba ku damar ɗaure zaman tabbatar da gidan yanar gizo zuwa wata na'ura ta musamman don rikitar da hare-hare daga wasu tsarin ta amfani da kukis ɗin zaman da aka katse. An gabatar da kan HTTP na "Secure-Session-Registration" don ƙirƙirar zaman da aka ɗaure da na'ura. Wannan hanyar kariya ta ƙunshi samar da maɓallan sirri guda biyu da aka ɗaure da na'urar yanzu, waɗanda aka samar bayan haɗawa kuma aka adana su a cikin TPM (Trusted Platform Module). Zaman yana amfani da kukis na ɗan gajeren lokaci, waɗanda ake sabuntawa akai-akai ta amfani da maɓallin sirri kuma ana iya tabbatar da su ta amfani da maɓallin jama'a.
     Sakin Chrome 145
  • An cire tsarin da ya ba masu amfani damar kashe toshe ƙarin burauzar da aka tilasta musu da aka gano sun karya ƙananan manufofin Chrome Web Store. Ƙananan keta haƙƙoƙi sun haɗa da yuwuwar rauni, tura ƙarin ba tare da sanin mai amfani ba, sarrafa bayanai, keta manufofin bayanan mai amfani, da kuma ayyukan ɓatarwa.
  • A cikin sigar Android, WebGPU Javascript API yana kashewa lokacin da aka kunna Yanayin Kariya na Advanced Android (AAPM). Shafukan yanar gizo waɗanda ke amfani da WebGPU don samar da abun ciki na 3D (kamar Google Maps) na iya amfani da madadin da ke jinkiri, kamar WebGL (5.78% a hankali a gwaje-gwaje). Ana iya amfani da kadarar navigator.gpu don gano ko an kashe WebGPU.
  • A cikin sigar Android, idan aka kunna Enhanced Safe Browsing, ana aiwatar da nazarin gida na bayyanar shafin yanar gizon don gano alamun zamba. Idan binciken gida ya nuna abubuwan da ake zargi da shakku, za a yi ƙarin bincike akan sabar Google, kuma idan an tabbatar, za a nuna wa mai amfani gargaɗi.
  • An ƙara Asalin API, yana samar da wani abu na Asalin da ke aiwatar da ra'ayin Asalin Yanar Gizo kuma yana ba da hanyoyin kwatantawa, tsarawa, da kuma fassara Asalin Yanar Gizo. An bayyana kalmar "Asalin Yanar Gizo" a cikin RFC 6454 don bambance tsakanin keɓance abun ciki da iyakokin aminci. Asalin Yanar Gizo ya ƙunshi ɓangaren URL tare da sunan yarjejeniya, sunan mai masauki, da lambar tashar jiragen ruwa (misali, https://opennet.ru). An gabatar da wannan sabon API don haɗa ayyuka tare da Asalin Yanar Gizo da kuma kawar da raunin da ya faru sakamakon kwatancen da ba daidai ba na wakilcin ASCII na Asalin Yanar Gizo lokacin tantance ko albarkatu suna cikin rukunin yanar gizo ɗaya.
  • Haƙƙoƙin shiga tsarin gida lokacin hulɗa da shafukan jama'a an raba su. Buƙatu daga shafin zuwa Adireshin IP Ana sarrafa buƙatun cibiyar sadarwa ta gida (adireshin intanet ko na ciki) da kuma hanyar sadarwa ta loopback (127.0.0.0/8) ta amfani da izini daban-daban (cibiyar sadarwa ta gida da hanyar sadarwa ta loopback), wanda ke buƙatar mai amfani ya tabbatar da aikin a cikin akwatin tattaunawa na musamman. An rufe yunƙurin sauke albarkatu, buƙatun fetch(), da shigarwar iframe ta hanyar kariya. Masu kai hari suna amfani da buƙatun albarkatu na ciki don yin hare-haren CSRF akan na'urori masu amfani da hanyoyin sadarwa, wuraren shiga, firintoci, hanyoyin yanar gizo na kamfanoni, da sauran na'urori da ayyuka waɗanda ke karɓar buƙatu daga hanyar sadarwa ta gida kawai. Bugu da ƙari, ana iya amfani da duba albarkatun ciki don gano kai tsaye ko don tattara bayanai game da hanyar sadarwa ta gida.
  • An cire saitin UserAgentReduction, wanda ya ba wa mai binciken damar komawa ga ainihin kanun HTTP na User-Agent da sigogin JavaScript navigator.userAgent, navigator.appVersion, da navigator.platform. Mai binciken yanzu koyaushe yana aika kanun User-Agent da aka rage ba tare da cikakken bayani game da dandamali ba (misali, "Android 16; S" maimakon "Android 16; SM-A205U").
  • Mai duba PDF da aka gina a ciki yanzu yana tallafawa adana takardu zuwa gajimare na Google Drive. A cikin Google Drive, ana adana takardu daga Chrome a cikin babban fayil ɗin "An Ajiye daga Chrome".
  • An canza LayoutShift API, wanda ke bin diddigin canje-canje a matsayin abubuwan DOM akan allon, zuwa nuna bayanai a cikin pixels na CSS maimakon pixels na allo. Faifan CSS suna la'akari da DPI na allon kuma suna da daidaito a duk allon, gami da masu saka idanu masu yawan pixel. An yi wannan canjin ne don daidaita Chrome da sauran masu bincike.
  • An aiwatar da hanyar WebRequest.SecurityInfo don API ɗin Tsarin da aka Sarrafa, yana ba da damar aikace-aikacen yanar gizo ya katse buƙatar HTTPS, WSS, ko WebTransport zuwa sabar kuma ya sami sawun sawun takardar shaidar. uwar garke kuma yi amfani da shi don tabbatar da takardar shaidar da aka yi amfani da ita don haɗin kai tsaye zuwa uwar garken ɗaya ta hanyar TCP/UDP.
  • An ƙara tallafi ga kaddarorin CSS na naɗe-naɗe da tsayin ginshiƙi da aka ayyana a cikin ƙayyadaddun CSS Multi-column Layout 2. Haƙƙin naɗe-naɗen ginshiƙi yana ba da damar ginshiƙai su naɗe zuwa sabon layi maimakon gungurawa a kwance idan ginshiƙan ba su dace da tsayin da haƙƙin tsayin ginshiƙi ya ƙayyade ba.
  • An ƙara CSS property text-justify, wanda ke ba ku damar ƙayyade nau'in daidaitawar rubutu lokacin amfani da "text-align: justify";
  • Ka'idojin CSS na tazara haruffa da kuma tazara kalmomi suna ba ka damar ƙayyade girman shiga a matsayin kashi.
  • Taswirar JavaScript da abubuwan WeakMap suna aiwatar da ƙayyadaddun "upsert", suna sauƙaƙe aiki tare da tarin ma'auratan maɓalli/ƙima. An ƙara hanyoyin getOrInsert da getOrInsertComputed, suna dawo da ƙimar da ta riga ta kasance a cikin tarin da ke da alaƙa da takamaiman maɓallin ko ƙirƙirar sabon shigarwa idan ba a sami maɓallin ba.
  • An sake rubuta aiwatar da IndexedDB API ta amfani da bayanan SQLite a matsayin backend (aiwatar da ta gabata ta dogara ne akan LevelDB a cikin fayiloli daban-daban). Sabuwar aiwatarwa a halin yanzu ana amfani da ita ne kawai a cikin mahallin ƙwaƙwalwa, kamar a cikin yanayin ɓoyewa.
  • An inganta kayan aikin haɓaka yanar gizo. Ikon iyakance saurin buƙatun cibiyar sadarwa na mutum ɗaya yanzu an kunna shi ta hanyar tsoho a cikin sashin "Sharuɗɗan Buƙata" na hanyar duba hanyar sadarwa.

Baya ga sabbin fasaloli da gyaran kwari, sabuwar sigar ta magance raunin da ke tattare da rauni guda 11. An gano yawancin raunin da aka samu ta hanyar gwaji ta atomatik ta amfani da AddressSanitizer, MemorySanitizer, Control Flow Integrity, LibFuzzer, da AFL. Ba a gano wasu muhimman matsaloli da za su iya ba da damar ketare dukkan matakan kariyar burauza da aiwatar da lambar da ke wajen yanayin sandbox ba. A matsayin wani ɓangare na shirin lada mai rauni na fitowar ta yanzu, Google ta kafa lada 11 kuma ta ba da lada 18,500 (lada 1 kowanne na $8000, $5000, $2000, da $500, da lada 3 na $1000). Ba a tantance adadin lada 4 ba tukuna.

source: budenet.ru