
Google Webブラウザーの「Google Chrome 45」安定版(Stable Channel) 45.0.2454.85 がリリースされました。
Windows/Mac/Linux対応
予告通り、プラグイン設定で「重要なプラグイン コンテンツを検出して実行する」が初期状態に変わり、表示ページ内で重要ではないものと判定されたコンテンツの自動再生がされないようになっています。
Flashを使用した自動再生広告コンテンツとか。
判定精度はどの程度ですかぬ。
そして、消費するメモリーの節約も。
このほか、計29件のセキュリティ問題を修正。
■Security Fixes and Rewards
Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.
This update includes 29 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chromium security page for more information.
- [$7500][516377] High CVE-2015-1291: Cross-origin bypass in DOM. Credit to anonymous.
- [$7500][522791] High CVE-2015-1292: Cross-origin bypass in ServiceWorker. Credit to Mariusz Mlynski.
- [$7500][524074] High CVE-2015-1293: Cross-origin bypass in DOM. Credit to Mariusz Mlynski.
- [$5000][492263] High CVE-2015-1294: Use-after-free in Skia. Credit to cloudfuzzer.
- [$3000][502562] High CVE-2015-1295: Use-after-free in Printing. Credit to anonymous.
- [$1000][421332] High CVE-2015-1296: Character spoofing in omnibox. Credit to zcorpan.
- [$3000][510802] Medium CVE-2015-1297: Permission scoping error in WebRequest. Credit to Alexander Kashev.
- [$3000][518827] Medium CVE-2015-1298: URL validation error in extensions. Credit to Rob Wu.
- [$2000][416362] Medium CVE-2015-1299: Use-after-free in Blink. Credit to taro.suzuki.dev.
- [$1000][511616] Medium CVE-2015-1300: Information leak in Blink. Credit to cgvwzq.
▼Google Chrome Blog – Chrome improvements for a faster and more efficient web
▼Google Chrome Release – Stable Channel Update
▼Chromium Blog -Chrome 45 Beta: New ES2015 features, service worker improvements, and media controls (2015/07/27)
▼Chrome ヘルプセンター