Providing Free and Editor Tested Software Downloads
< HOME | TUTORIALS | GEEK-CADE| WEB TOOLS | YOUTUBE | NEWSLETTER | DEALS! | FORUMS | >

MajorGeeks.com - If you wanna be tweaked you gotta get geeked.

Software Categories

All In One Tweaks
Android
Antivirus & Malware
Appearance
Back Up
Browsers
CD\DVD\Blu-Ray
Covert Ops
Drivers
Drives (SSD, HDD, USB)
Games
Graphics & Photos
Internet Tools
Linux Distros
MajorGeeks Windows Tweaks
Multimedia
Networking
Office & Productivity
System Tools

Other news

· How To and Tutorials
· Life Hacks and Reviews
· Way Off Base
· MajorGeeks Deals
· News
· Off Base
· Reviews


Opera One
Everything
you need.
Already
there.
AI assistant
Aria, built right in
Free VPN
No account needed
Ad blocker
Faster, cleaner web
Tab Islands
Grouped browsing
Useful sidebars
Make it yours
No Clunky Extensions Needed.



MajorGeeks Approved.



Download free

spread the word

· YouTube
· Facebook
· Instagram
· Twitter
· Pintrest
· RSS/XML Feeds
· News Blur
· Yahoo
· Symbaloo

about

· Top Freeware Picks
· Malware Removal
· Geektionary
· Useful Links
· About Us
· Copyright
· Privacy
· Terms of Service
· How to Uninstall

top downloads

1. GS Auto Clicker
2. Smart Defrag
3. Macrium Reflect FREE Edition
4. K-Lite Mega Codec Pack
5. MusicBee
6. Microsoft Visual C++ 2015-2022 Redistributable Package
7. Sergei Strelec's WinPE
8. K-Lite Codec Pack Full
9. Visual C++ Redistributable Runtimes AIO Repack
10. McAfee Removal Tool (MCPR)
More >>

top reads

Star How Much Storage Space Are Your Installed Apps Using in Windows 11?

Star How To Reset and Fix the Settings App in Windows 11

Star How To Remove the Windows 11 Updated Start Menu

Star How To Download a Windows 11 ISO

Star How To Disable Drag Tray

Star How To Boot Into WinRE (Windows Recovery Environment)

Star How To Find the Installation Date of Apps

Star Recently Opened Files - How To Hide or Show Them In Jump Lists, File Explorer, and Start Menu

Star How To Change the Name of a Local or Microsoft Account

Star How To Remove OneDrive From the Navigation Pane in File Explorer


MajorGeeks.Com » News » December 2012 » Two High-Risk Flaws Fixed in Google Chrome 23

Two High-Risk Flaws Fixed in Google Chrome 23


Contributed by: Email on 12/03/2012 10:19 AM [ comments Comments ]


Google has fixed two bugs in its Chrome browser, including a high-severity vulnerability in its media handler that a researcher named Pinkie Pie discovered. The bug, which is different from another use-after-free vulnerability the researcher used in the Pwnium contest at Hack in the Box in October, was serious enough to earn him a bug bounty of more than $7,000.

Google repaired the two high-priority vulnerabilities in Chrome 23, pushing out the new version to users late last week. The company has been very quick to fix security vulnerabilities, especially those that have been made public or come out of contests such as Pwn2Own or the company's own Pwnium, which gives researchers monetary incentives for finding particularly severe flaws in the browser during a set period of time at a conference. The first of the Pwnium contests, which was at CanSecWest in Vancouver earlier this year, produced two sets of bugs from separate researchers who were able to produce full sandbox escapes and compromises of Chrome.

Google patched all of those vulnerabilities within a couple of days of their discovery, and was able to do the same with the other bugs that Pinkie Pie used in the second Pwnium contest at Hack in the Box in October. The company recently said that it would be handing out some larger-than-usual rewards to researchers who report particularly severe or unusual bugs. The use-after-free that Pinkie Pie discovered and Google fixed in Chrome 23 met those criteria, as it was an exploit for 64-bit systems, and earned him $7,331.

Here are the flaws fixed in Chrome 23:

[161564] High CVE-2012-5138: Incorrect file path handling. Credit to Google Chrome Security Team (Jüri Aedla).
[$7331] [162835] High CVE-2012-5137: Use-after-free in media source handling. Credit to Pinkie Pie.





« Microsoft Security Essentials fails AV-Test · Two High-Risk Flaws Fixed in Google Chrome 23 · This Boob-Themed Milk Truck Delivers Nourishment »




Comments
comments powered by Disqus

MajorGeeks.Com » News » December 2012 » Two High-Risk Flaws Fixed in Google Chrome 23

© 2000-2026 MajorGeeks.com
Powered by Contentteller® Business Edition