MacKnown Issues
  • (Issue 47419) Attempting to create an application shortcut from the File menu crashes Chrome on Windows
More details about additional changes are available in the svn log of all revisions.

You can find out about getting on the Dev channel here: http://dev.chromium.org/getting-involved/dev-channel.

If you find new issues, please let us know by filing a bug at http://code.google.com/p/chromium/issues/entry

Jason Kersey
Google Chrome

  • [38105] Medium XSS via application/json response (regression). Credit to Ben Davis for original discovery and Emanuele Gentili for regression discovery.
  • [43322] Medium Memory error in video handling. Credit to Mark Dowd under contract to Google Chrome Security Team.
  • [43967] High Subresource displayed in omnibox loading. Credit to Michal Zalewski of Google Security Team.
  • [45267] High Memory error in video handling. Credit to Google Chrome Security Team (Cris Neckar).
  • [$500] [46126] High Stale pointer in x509-user-cert response. Credit to Rodrigo Marcos of SECFORCE.
If you find issues, please let us know: http://code.google.com/p/chromium/issues/entry

Anthony Laforge,
Google Chrome Team


If you find issues, please let us know: http://code.google.com/p/chromium/issues/entry

Anthony Laforge,
Google Chrome Team
Share on Twitter Share on Facebook


The Dev channel has been updated to 6.0.437.1 for Windows and Linux, and Mac has been updated to 6.0.437.2.

All
Windows
Mac
Linux
Known Issues
More details about additional changes are available in the svn log of all revision.

You can find out about getting on the Dev channel here: http://dev.chromium.org/getting-involved/dev-channel.

If you find new issues, please let us know by filing a bug at http://code.google.com/p/chromium/issues/entry

Anthony Laforge
Google Chrome
Share on Twitter Share on Facebook


This release fixes the following security issues:
  • [15766] Medium Cross-origin keystroke redirection. Credit to Michal Zalewski of Google Security Team.
  • [$2000] [39985] High Cross-origin bypass in DOM methods. Credit to Sergey Glazunov.
  • [$500] [42723] High Memory error in table layout. Credit to wushi of team509.
  • [Linux only] [43304] High Linux sandbox escape. Credit to Mark Dowd under contract to Google Chrome Security Team.
  • [43307] High Bitmap stale pointer. Credit to Mark Dowd under contract to Google Chrome Security Team.
  • [43315] High Memory corruption in DOM node normalization. Credit to Mark Dowd under contract to Google Chrome Security Team.
  • [43487] High Memory corruption in text transforms. Credit to wushi of team509.
  • [43902] Medium XSS in innerHTML property of textarea. Credit to sirdarckcat of Google Security Team.
  • [44740] High Memory corruption in font handling. Credit: Apple.
  • [44868] High Geolocation events fire after document deletion. Credit to Google Chrome Security Team (Justin Schuh).
  • [44955] High Memory corruption in rendering of list markers. Credit: Apple.
If you find issues, please let us know: http://code.google.com/p/chromium/issues/entry

Anthony Laforge,
Google Chrome Team
Share on Twitter Share on Facebook


If you spot any issues, please let us know: http://code.google.com/p/chromium/issues/entry.

Anthony Laforge
Google Chrome Team
Share on Twitter Share on Facebook