ืขื“ื›ื•ืŸ Chrome 89.0.4389.128 ืขื ืชื™ืงื•ืŸ ืคื’ื™ืขื•ืช ืฉืœ 0 ื™ืžื™ื. Chrome 90 ืžืชืขื›ื‘

ื’ื•ื’ืœ ื™ืฆืจื” ืขื“ื›ื•ืŸ ืœ-Chrome 89.0.4389.128, ืืฉืจ ืžืชืงืŸ ืฉืชื™ ื ืงื•ื“ื•ืช ืชื•ืจืคื” (CVE-2021-21206, CVE-2021-21220), ืฉืขื‘ื•ืจืŸ ื–ืžื™ื ื•ืช ื ื™ืฆื•ืœ ืขื‘ื•ื“ื” (0-ื™ื•ื). ื”ืคื’ื™ืขื•ืช CVE-2021-21220 ืฉื™ืžืฉื” ืœืคืจื™ืฆืช Chrome ื‘ืชื—ืจื•ืช Pwn2Own 2021.

ื”ื ื™ืฆื•ืœ ืฉืœ ืคื’ื™ืขื•ืช ื–ื• ืžืชื‘ืฆืข ื‘ืืžืฆืขื•ืช ื‘ื™ืฆื•ืข ืฉืœ ื“ืจืš ืžืกื•ื™ืžืช ืฉืœ ืงื•ื“ WebAssembly ืžืขื•ืฆื‘ (ื”ืคื’ื™ืขื•ืช ื ื’ืจืžืช ืขืœ ื™ื“ื™ ืฉื’ื™ืื” ื‘ืžื›ื•ื ื” ื”ื•ื™ืจื˜ื•ืืœื™ืช ืฉืœ WebAssembly, ื”ืžืืคืฉืจืช ืœืš ืœื›ืชื•ื‘ ืื• ืœืงืจื•ื ื ืชื•ื ื™ื ืœื›ืชื•ื‘ืช ืฉืจื™ืจื•ืชื™ืช ื‘ื–ื™ื›ืจื•ืŸ). ื™ืฆื•ื™ืŸ ื›ื™ ื”ื ื™ืฆื•ืœ ื”ืžื•ื“ื’ื ืื™ื ื• ืžืืคืฉืจ ืœืขืงื•ืฃ ืืช ื‘ื™ื“ื•ื“ ืืจื’ื– ื”ื—ื•ืœ ื•ืžืชืงืคื” ืžืŸ ื”ืžื ื™ื™ืŸ ืžื—ื™ื™ื‘ืช ื’ื™ืœื•ื™ ืฉืœ ืคื’ื™ืขื•ืช ื ื•ืกืคืช ื›ื“ื™ ืœืฆืืช ืžืืจื’ื– ื”ื—ื•ืœ (ืคื’ื™ืขื•ืช ื›ื–ื• ื”ื•ื›ื—ื” ืขื‘ื•ืจ Windows ื‘ืชื—ืจื•ืช Pwn2Own 2021).

ื“ื•ื’ืžื” ืœื ื™ืฆื•ืœ ืœื‘ืขื™ื” ื–ื• ืคื•ืจืกืžื” ื‘-GitHub ืœืื—ืจ ืฉื‘ื•ืฆืข ืชื™ืงื•ืŸ ืœืžื ื•ืข V8, ืืš ืžื‘ืœื™ ืœื”ืžืชื™ืŸ ืœื™ืฆื™ืจืช ืขื“ื›ื•ืŸ ื“ืคื“ืคืŸ ื”ืžื‘ื•ืกืก ืขืœื™ื• (ื’ื ืื ื”ื ื™ืฆื•ืœ ืœื ืคื•ืจืกื, ื”ืชื•ืงืคื™ื ื”ืฆืœื™ื—ื• ืœื™ืฆื•ืจ ืžื—ื“ืฉ ื–ื” ืžื‘ื•ืกืก ืขืœ ื ื™ืชื•ื— ืฉืœ ืฉื™ื ื•ื™ื™ื ื‘ืžืื’ืจ V8, ืžื” ืฉื›ื‘ืจ ืงืจื” ืงื•ื“ื ืœื›ืŸ ืขืงื‘ ืžืฆื‘ ืฉื‘ื• ืชื™ืงื•ืŸ ื‘-V8 ื›ื‘ืจ ืคื•ืจืกื, ืืš ืžื•ืฆืจื™ื ื”ืžื‘ื•ืกืกื™ื ืขืœื™ื• ืขื“ื™ื™ืŸ ืœื ืขื•ื“ื›ื ื•).

ื‘ื ื•ืกืฃ, ืืชื” ื™ื›ื•ืœ ืœืฉื™ื ืœื‘ ืœืฉื™ื ื•ื™ ื‘ืœื•ื— ื”ื–ืžื ื™ื ืฉืœ ื”ืคืจืกื•ื ืขื‘ื•ืจ ืฉื—ืจื•ืจื• ืฉืœ Chrome 90 ืขื‘ื•ืจ Linux, Windows ื•-macOS. ืฉื—ืจื•ืจ ื–ื” ื”ื™ื” ืžืชื•ื›ื ืŸ ืœ-13 ื‘ืืคืจื™ืœ, ืืš ืœื ืคื•ืจืกื ืืชืžื•ืœ, ื•ืจืง ื”ื’ืจืกื” ืœืื ื“ืจื•ืื™ื“ ืฉื•ื—ืจืจื”. ืžื”ื“ื•ืจืช ื‘ื˜ื ื ื•ืกืคืช ืฉืœ Chrome 90 ื ื•ืฆืจื” ื”ื™ื•ื. ืชืืจื™ืš ืฉื—ืจื•ืจ ื—ื“ืฉ ืœื ื”ื•ื›ืจื–.

ืžืงื•ืจ: OpenNet.ru

ื”ื•ืกืคืช ืชื’ื•ื‘ื”