Ntlafatso ea Chrome 91.0.4472.101 e lokisa ho ba kotsing ha matsatsi a 0

Google e thehile ntlafatso ho Chrome 91.0.4472.101, e lokisang bofokoli ba 14, ho kenyelletsa le bothata ba CVE-2021-30551, bo seng bo sebelisoa ke bahlaseli mesebetsing (0-day). Lintlha ha li so hlahisoe, re tseba feela hore ts'oaetso e bakoa ke ho tšoara mofuta o fosahetseng (Type Confusion) enjeneng ea V8 JavaScript.

Phetolelo e ncha e boetse e felisa ts'oaetso e 'ngoe e kotsi ea CVE-2021-30544, e bakoang ke phihlello ea mohopolo kamora ho e lokolla (sebelisa-kamora-mahala) ka har'a cache ea phetoho (BFCache, Back-forward cache), e sebelisetsoang phetoho hanghang ha u sebelisa "Back". ” likonopo " le "Forward" kapa ha u ntse u sheba maqepheng a neng a shebiloe pele a sebaka sa hajoale. Bothata bo fuoe boemo bo boima ba kotsi, i.e. Ho bonts'itsoe hore ts'oaetso e u lumella ho feta maemo ohle a ts'ireletso ea sebatli mme ho lekane ho kenya khoutu ho sistimi e kantle ho tikoloho ea sandbox.

Source: opennet.ru

Eketsa ka tlhaloso