Google 㯠Web ãã©ãŠã¶ Chrome 107 ã®ãªãªãŒã¹ãçºè¡šããåæã« Chrome ã®åºç€ãšãªãç¡æã® Chromium ãããžã§ã¯ãã®å®å®çãªãªãŒã¹ãå©çšå¯èœã«ãªããŸããã Chrome ãã©ãŠã¶ã¯ãGoogle ããŽã®äœ¿çšãã¯ã©ãã·ã¥æã«éç¥ãéä¿¡ããã·ã¹ãã ã®ååšãã³ããŒä¿è·ããããã㪠ã³ã³ãã³ã (DRM) ãåçããã¢ãžã¥ãŒã«ãã¢ããããŒããèªåçã«ã€ã³ã¹ããŒã«ããã·ã¹ãã ããµã³ãããã¯ã¹åé¢ãæ°žç¶çã«æå¹ã«ããç¹ã§ Chromium ãšã¯ç°ãªããŸãã ãGoogle API ã«ããŒãæäŸããæ€çŽ¢æã« RLZ- ãã©ã¡ãŒã¿ãéä¿¡ããŸãã æŽæ°ã«ããã«æéãå¿ èŠãªå Žåã¯ãExtended Stable ãã©ã³ããå¥éãµããŒãããããã®åŸ 8 é±éãµããŒããããŸãã Chrome 108 ã®æ¬¡åãªãªãŒã¹ã¯ 29 æ XNUMX æ¥ã«äºå®ãããŠããŸãã
Chrome 107 ã®äž»ãªå€æŽç¹:
- ECH (Encrypted Client Hello) ã¡ã«ããºã ã®ãµããŒããè¿œå ãããŸããããã㯠ESNI (Encrypted Server Name Indication) ã®éçºãç¶ç¶ããèŠæ±ããããã¡ã€ã³åãªã©ã® TLS ã»ãã·ã§ã³ ãã©ã¡ãŒã¿ãŒã«é¢ããæ å ±ã®æå·åã«äœ¿çšãããŸãã ECH ãš ESNI ã®äž»ãªéãã¯ãåã ã®ãã£ãŒã«ãã®ã¬ãã«ã§æå·åãã代ããã«ãECH 㯠TLS ClientHello ã¡ãã»ãŒãžå šäœãæå·åããããšã§ãESNI ãã«ããŒããŠããªããã£ãŒã«ããããšãã° PSK (äºåå ±æ) ãä»ããæŒæŽ©ããããã¯ã§ããããšã§ããããŒ) ãã£ãŒã«ãã ãŸããECH ã¯ãTXT ã¬ã³ãŒãã®ä»£ããã« HTTPSSVC DNS ã¬ã³ãŒãã䜿çšããŠå ¬éããŒæ å ±ãäŒéãããã€ããªããå ¬éããŒæå·å (HPKE) ã¡ã«ããºã ã«åºã¥ãèªèšŒããããšã³ãããŒãšã³ãæå·åã䜿çšããŠããŒãååŸããŠæå·åããŸãã ECH ãæå¹ã«ãããã©ãããå¶åŸ¡ããããã«ããchrome://flags#encrypted-client-helloãèšå®ãææ¡ãããŠããŸãã
- H.265 (HEVC) 圢åŒã§ã®ããŒããŠã§ã¢ ã¢ã¯ã»ã©ã¬ãŒã·ã§ã³ã«ãããã㪠ãã³ãŒãã®ãµããŒããæå¹ã«ãªããŸãã
- User-Agent HTTP ããããŒãš JavaScript ãã©ã¡ãŒã¿ãŒ navigator.userAgentãnavigator.appVersionãããã³ navigator.platform ã®æ
å ±åæžã®ç¬¬ 107 段éãã¢ã¯ãã£ãåããããŠãŒã¶ãŒãååçã«èå¥ããããã«äœ¿çšã§ããæ
å ±ãåæžããããã«å®è£
ãããŸããã Chrome 10.0 ã§ã¯ããã¹ã¯ããã ãŠãŒã¶ãŒåãã® User-Agent è¡ã®ãã©ãããã©ãŒã ãšããã»ããµã®æ
å ±ãåæžãããnavigator.platform JavaScript ãã©ã¡ãŒã¿ã®å
容ãåçµãããŸããã ãã®å€æŽã¯ Windows ãã©ãããã©ãŒã ã®ããŒãžã§ã³ã§ã®ã¿é¡èã§ãããç¹å®ã®ãã©ãããã©ãŒã ã®ããŒãžã§ã³ã¯ãWindows NT XNUMXãã«å€æŽãããŸãã Linux ã§ã¯ããŠãŒã¶ãŒ ãšãŒãžã§ã³ãã®ãã©ãããã©ãŒã ã®å
容ã¯å€æŽãããŠããŸããã
以åã¯ããã©ãŠã¶ãŒã®ããŒãžã§ã³ãæ§æãã MINOR.BUILD.PATCH çªå·ã¯ 0.0.0 ã«çœ®ãæããããŸããã å°æ¥çã«ã¯ããã©ãŠã¶ãŒã®ååãäž»èŠãªãã©ãŠã¶ãŒã®ããŒãžã§ã³ããã©ãããã©ãŒã ãããã€ã¹ã®çš®é¡ (æºåž¯é»è©±ãPCãã¿ãã¬ãã) ã«é¢ããæ å ±ã®ã¿ãããããŒã«æ®ãäºå®ã§ãã æ£ç¢ºãªããŒãžã§ã³ãæ¡åŒµãã©ãããã©ãŒã ããŒã¿ãªã©ã®è¿œå ããŒã¿ãååŸããã«ã¯ããŠãŒã¶ãŒ ãšãŒãžã§ã³ã ã¯ã©ã€ã¢ã³ã ãã³ã API ã䜿çšããå¿ èŠããããŸãã ååãªæ°ããæ å ±ããªãããŠãŒã¶ãŒ ãšãŒãžã§ã³ã ã¯ã©ã€ã¢ã³ã ãã³ãã«åãæ¿ããæºåããŸã æŽã£ãŠããªããµã€ãã®å Žåã2023 幎 XNUMX æãŸã§ã¯å®å šãªãŠãŒã¶ãŒ ãšãŒãžã§ã³ããè¿ãæ©äŒããããŸãã
- Android ããŒãžã§ã³ã¯ Android 6.0 ãã©ãããã©ãŒã ããµããŒãããªããªãããã©ãŠã¶ãŒã«ã¯å°ãªããšã Android 7.0 ãå¿ èŠã«ãªããŸãã
- ããŠã³ããŒãç¶æ³ã远跡ããããã®ã€ã³ã¿ãŒãã§ãŒã¹ã®ãã¶ã€ã³ãå€æŽãããŸããã ããŠã³ããŒãã®é²è¡ç¶æ³ã«é¢ããããŒã¿ã衚瀺ããæäžè¡ã®ä»£ããã«ãã¢ãã¬ã¹ ããŒã®ããããã«ã«æ°ããã€ã³ãžã±ãŒã¿ãŒãè¿œå ãããŸããããããã¯ãªãã¯ãããšããã¡ã€ã«ã®ããŠã³ããŒãã®é²è¡ç¶æ³ãšãããŠã³ããŒãæžã¿ã®ãã¡ã€ã«ã®ãªã¹ããå«ãå±¥æŽã衚瀺ãããŸãã äžéšããã«ãšã¯ç°ãªãããã¿ã³ã¯ããã«äžã«åžžã«è¡šç€ºãããŠãããããŠã³ããŒãå±¥æŽã«ããã«ã¢ã¯ã»ã¹ã§ããŸãã æ°ããã€ã³ã¿ãŒãã§ã€ã¹ã¯çŸåšãããã©ã«ãã§äžéšã®ãŠãŒã¶ãŒã«ã®ã¿æäŸãããŠããŸãããåé¡ããªããã°ãã¹ãŠã®ãŠãŒã¶ãŒã«æ¡åŒµãããäºå®ã§ãã
- ãã¹ã¯ããããŠãŒã¶ãŒã®å Žåã¯ãCSV圢åŒã®ãã¡ã€ã«ã«ä¿åãããŠãããã¹ã¯ãŒããã€ã³ããŒãã§ããŸãã 以åã¯ããã¡ã€ã«ãããã©ãŠã¶ãžã®ãã¹ã¯ãŒãã¯ãpasswords.google.com ãµãŒãã¹ãä»ããŠã®ã¿è»¢éã§ããŸããããçŸåšã¯ããã©ãŠã¶ã«çµã¿èŸŒãŸããŠãã Google ãã¹ã¯ãŒã ãããŒãžã£ãŒããã転éã§ããããã«ãªããŸããã
- ãŠãŒã¶ãŒãæ°ãããããã¡ã€ã«ãäœæãããšãåæãæå¹ã«ããŠèšå®ã«ç§»åããããæ±ããããã³ããã衚瀺ããããããã¡ã€ã«åã®å€æŽãã«ã©ãŒããŒãã®éžæãå¯èœã«ãªããŸãã
- Android ãã©ãããã©ãŒã çšã®ããŒãžã§ã³ã§ã¯ãåçããããªãã¢ããããŒãããããã®ã¡ãã£ã¢ ãã¡ã€ã«ãéžæããããã®æ°ããã€ã³ã¿ãŒãã§ã€ã¹ãæäŸãããŸã (ç¬èªã®å®è£
ã§ã¯ãªããæšæºã® Android Media Picker ã€ã³ã¿ãŒãã§ã€ã¹ã䜿çšãããŸã)ã
- ãŠãŒã¶ãŒã劚害ããéç¥ãã¡ãã»ãŒãžãéä¿¡ããŠããããšãå€æãããµã€ãã«å¯ŸããŠã¯ãéç¥ã衚瀺ããèš±å¯ãèªåçã«åãæ¶ãæ©èœãæäŸãããŠããŸãã ããã«ããã®ãããªãµã€ãã«å¯Ÿããéç¥ã®éä¿¡èš±å¯ã®ãªã¯ãšã¹ãã¯åæ¢ãããŠããŸãã
- Screen Capture API ã«ã¯ãç»é¢å ±æã«é¢é£ããæ°ããããããã£ãè¿œå ãããŸãã - selfBrowserSurface (getDisplayMedia() ãåŒã³åºããšãã«çŸåšã®ã¿ããé€å€ã§ãã)ãsurfaceSwitching (ã¿ããåãæ¿ãããã¿ã³ãé衚瀺ã«ã§ãã)ãããã³ displaySurface (å ±æãå¶éã§ãã)ã¿ãããŠã£ã³ããŠããŸãã¯ç»é¢ïŒã
- èªã¿èŸŒã¿ãå®äºãããŸã§ããŒãžã®ã¬ã³ããªã³ã°ãäžæåæ¢ãããåå ãšãªã£ãŠãããªãœãŒã¹ãç¹å®ããããã«ãrenderBlockingStatus ããããã£ãããã©ãŒãã³ã¹ API ã«è¿œå ããŸããã
- ããã€ãã®æ°ãã API ã Origin ãã©ã€ã¢ã« ã¢ãŒãã«è¿œå ãããŸãã (å¥éã¢ã¯ãã£ããŒã·ã§ã³ãå¿
èŠãªå®éšçãªæ©èœ)ã ãªãªãžã³ ãã©ã€ã¢ã«ãšã¯ãããŒã«ã«ãã¹ããŸã㯠127.0.0.1 ããããŠã³ããŒããããã¢ããªã±ãŒã·ã§ã³ããããŸãã¯ç¹å®ã®ãµã€ãã§æééå®ã§æå¹ãªç¹å¥ãªããŒã¯ã³ãç»é²ããŠåä¿¡ããåŸãæå®ããã API ãæäœã§ããæ©èœãæå³ããŸãã
- 宣èšå API PendingBeaconããµãŒããŒãžã®å¿ç (ããŒã³ã³) ãå¿ èŠãšããªãããŒã¿ã®éä¿¡ãå¶åŸ¡ã§ããŸãã æ°ãã API ã䜿çšãããšãããšãã°ããŠãŒã¶ãŒãããŒãžãéããåŸã®ãã¬ã¡ããªã®è»¢éãæŽçããããã«ãç¹å®ã®æéã«éä¿¡æäœãåŒã³åºãå¿ èŠããªãããã®ãããªããŒã¿ã®éä¿¡ããã©ãŠã¶ãŒã«å§ä»»ã§ããŸãã
- æš©éãå§ä»»ããé«åºŠãªæ©èœãæå¹ã«ããããã«äœ¿çšããã Permissions-Policy (æ©èœããªã·ãŒ) HTTP ããããŒããããŒãžäžã®ãã¢ã³ããŒããã€ãã³ãã®ãã³ãã©ãŒãç¡å¹ã«ããããã«äœ¿çšã§ãããã¢ã³ããŒããå€ããµããŒãããããã«ãªããŸããã
- ã¿ã°ä»ãããã«ã¯ãrelãå±æ§ã®ãµããŒããè¿œå ãããŸãããããã«ããããrel=noreferrerããã©ã¡ãŒã¿ã Web ãã©ãŒã ã®ããã²ãŒã·ã§ã³ã«é©çšã㊠Referer ããããŒã®è»¢éãç¡å¹ã«ãããããrel=noopenerããã©ã¡ãŒã¿ãé©çšã㊠Window.opener ããããã£ã®èšå®ãç¡å¹ã«ããçŠæ¢ããããšãã§ããŸããé·ç§»å ã®ã³ã³ããã¹ããžã®ã¢ã¯ã»ã¹ã
- CSS Grid ã§ã¯ãç°ãªãã°ãªããç¶æ éã®ã¹ã ãŒãºãªé·ç§»ãæäŸããããã«ãgrid-template-columns ããããã£ãš Grid-template-rows ããããã£ãè£éãããµããŒããè¿œå ãããŸããã
- Web éçºè åãã®ããŒã«ãæ¹åãããŸããã ãããããŒãèšå®ããæ©èœãè¿œå ãããŸããã WebAssembly 圢åŒã«å€æããã C/C++ ã¢ããªã±ãŒã·ã§ã³ ãªããžã§ã¯ãã®ã¡ã¢ãªæ€æ»ãæ¹åãããŸããã
é©æ°ãšãã°ä¿®æ£ã«å ããŠãæ°ããããŒãžã§ã³ã§ã¯ 14 件ã®è匱æ§ãæé€ãããŠããŸãã è匱æ§ã®å€ãã¯ãAddressSanitizerãMemorySanitizerãControl Flow IntegrityãLibFuzzerãããã³ AFL ããŒã«ã䜿çšããèªåãã¹ãã®çµæãšããŠç¹å®ãããŸããã ãã¹ãŠã®ã¬ãã«ã®ãã©ãŠã¶ãŒä¿è·ããã€ãã¹ãããµã³ãããã¯ã¹ç°å¢å€ã®ã·ã¹ãã äžã§ã³ãŒããå®è¡ã§ãããããªé倧ãªåé¡ã¯ç¢ºèªãããŠããŸããã çŸåšã®ãªãªãŒã¹ã®è匱æ§ãçºèŠããå Žåã«çŸéã§å ±å¥šéãæ¯æãããã°ã©ã ã®äžç°ãšããŠãGoogle 㯠10 件ã®è³éãšã㊠57 ç±³ãã«ãæ¯æããŸãã (20000 件ã®è³é㯠17000 ãã«ã7000 ãã«ã3000 ãã«ã2000 件ã®è³é㯠1000 ãã«ãXNUMX 件ã®è³é㯠XNUMX ãã«ãXNUMX 件)è³éXNUMXãã«ïŒã XNUMXåã®å ±é
¬ã®èŠæš¡ã¯ãŸã 決ãŸã£ãŠããŸããã
åºæïŒ ãªãŒãã³ããã.ru