Google Chrome 40.0.2214.111 Stable

  • 5 February 2015
  • 0 replies
  • 1626 views

Userlevel 7
Badge +52


 
The stable channel has been updated to 40.0.2214.111 for Windows, Mac and Linux. A full list of changes is available in the log.

Security Fixes and Rewards
Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven't yet fixed.

This update includes 11 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chromium security page for more information.

  • [$TBD][447906High CVE-2015-1209: Use-after-free in DOM. Credit to Maksymillian Motyl.
  • [$TBD][453979High CVE-2015-1210: Cross-origin-bypass in V8 bindings. Credit to anonymous.
  • [$TBD][453982High CVE-2015-1211: Privilege escalation using service workers. Credit to anonymous.
As usual, our ongoing internal security work was responsible for a wide range of fixes:
  • [455225] CVE-2015-1212: Various fixes from internal audits, fuzzing and other initiatives.
Many of the above bugs were detected using AddressSanitizer or MemorySanitizer.

Interested in switching release channels? Find out how. If you find a new issue, please let us know by filing a bug.Source 32-bit (x86):

Download Google Chrome Offline Installer (32-bit) (for single user account)
Download Google Chrome Offline Installer (32-bit) (for all user accounts)

64-bit (x64):
Download Google Chrome Offline Installer (64-bit) (for single user account)
Download Google Chrome Offline Installer (64-bit) (for all user accounts)

Download Google Chrome MSI Installer for Windows
Download Google Chrome MSI Installer for Windows (Alternative Link)

0 replies

Be the first to reply!

Reply