Google Chrome 107 Stable out with 10 security fixes
#1
Information 
Quote:Google released a new stable version of the company's Chrome web browser yesterday. The Chrome 107 update patches 10 different security issues in the web browser.

[Image: chrome-107-security-update.png]

Chrome desktop installations should receive the update automatically over the coming days and weeks. Administrators may speed up the upgrade by updating the browser manually.

To do that, it is necessary to open chrome://settings/help in the browser's address bar (you may also reach the internal page via Menu > Help > About Google Chrome). Chrome displays the current version and runs a check for updates. The browser should pick up the update at this point and install it automatically.

Chrome is up to date if the following version is listed on the page (it depend on the operating system)
  • Mac: 107.0.5304.110
  • Linux: 107.0.5304.110
  • Windows: 107.0.5304.106/.107
The new Chrome release fixes 10 different security issues in the browser. Google discloses externally reported vulnerabilities only to the public. For this particular update, six of the ten vulnerabilities are listed by Google. These are:
  1. [$21000][1377816] High CVE-2022-3885: Use after free in V8. Reported by gzobqq@ on 2022-10-24
  2. [$10000][1372999] High CVE-2022-3886: Use after free in Speech Recognition. Reported by anonymous on 2022-10-10
  3. [$7000][1372695] High CVE-2022-3887: Use after free in Web Workers. Reported by anonymous on 2022-10-08
  4. [$7000][1375059] High CVE-2022-3888: Use after free in WebCodecs. Reported by Peter Nemeth on 2022-10-16
  5. [$TBD][1380063] High CVE-2022-3889: Type Confusion in V8. Reported by anonymous on 2022-11-01
  6. [$TBD][1380083] High CVE-2022-3890: Heap buffer overflow in Crashpad. Reported by anonymous on 2022-11-01
All six security vulnerabilities have a severity rating of high, second only to vulnerabilities rated as critical. Google does not mention that any of the vulnerabilities are exploited in the wild at the time of releasing the update. Still, most administrators may want to update the browser as soon as possible to protect it from potential attacks.

Google released an update for the Android version of Chrome as well. The Android release includes the same security fixes as the desktop update according to Google. There has been no mention of an update for Chrome's Extended Stable channel.

Expect other Chromium-based browser developers to release updates for their browsers as well in the coming days.

Now You: do you run Google Chrome or another Chromium-based browser?
...
Continue Reading
Reply


Messages In This Thread
Google Chrome 107 Stable out with 10 security fixes - by harlan4096 - 09 November 22, 12:32

Forum Jump:


Users browsing this thread: 1 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
Adobe Acrobat Reader DC 26.001.21651
Adobe Acrobat Read...harlan4096 — 18:17
Privazer 4.0.123 (05 June 2026)
v4.0.123 (05 June ...harlan4096 — 07:35
Brave Software Launches Origin, a Paid B...
Brave Software has...harlan4096 — 18:51
AMD Radeon Adrenalin Edition 20.11.2
AMD Adrenalin 26.6.1...harlan4096 — 17:26
LibreOffice 26.2.4
Berlin, 5 June 202...harlan4096 — 12:17

[-]
Birthdays
Today's Birthdays
avatar (48)BrantgoG
Upcoming Birthdays
avatar (49)rapedDow
avatar (44)Johnsonsyday
avatar (49)Groktus
avatar (41)efodo
avatar (39)Tedscolo
avatar (46)brakasig
avatar (51)smudloquask
avatar (46)benchJem
avatar (45)JamesReshy
avatar (47)Francisemefe
avatar (40)leoniDup
avatar (39)Patrizaancem
avatar (39)biobdam
avatar (42)zacforat
avatar (47)NemrokReks
avatar (38)Barrackleve
avatar (40)Julioagopy
avatar (50)aolaupitt2558
avatar (48)vadimTob
avatar (38)leannauu4
avatar (40)storoBox
avatar (48)kinotHeemn
avatar (39)Ceballos1976
avatar (40)efynu
avatar (32)horancos

[-]
Online Staff
There are no staff members currently online.

>