Google Chrome updates

Chrome 30.0.1599.66 released ...

FYI...

Chrome 30.0.1599.66 released
- http://googlechromereleases.blogspot.com/2013/10/stable-channel-update.html
Oct 1, 2013 - "... Chrome 30 to the Stable channel for Windows, Mac, Linux and Chrome Frame. Chrome 30.0.1599.66 contains a number of fixes and improvements, including:
Easier searching by image
A number of new apps/extension APIs
Lots of under the hood changes for stability and performance ...
... This update includes -50- security fixes..."

- https://secunia.com/advisories/55087/
Release Date: 2013-10-02
Criticality: Highly Critical
Where: From remote
Impact: Spoofing, Unknown, System access...
CVE Reference(s): CVE-2013-2906, CVE-2013-2907, CVE-2013-2908, CVE-2013-2909, CVE-2013-2910, CVE-2013-2911, CVE-2013-2912, CVE-2013-2913, CVE-2013-2914, CVE-2013-2915, CVE-2013-2916, CVE-2013-2917, CVE-2013-2918, CVE-2013-2919, CVE-2013-2920, CVE-2013-2921, CVE-2013-2922, CVE-2013-2923, CVE-2013-2924
... vulnerabilities are reported in versions prior to 30.0.1599.66.
Solution: Upgrade to version 30.0.1599.66.
Original Advisory:
http://googlechromereleases.blogspot.com/2013/10/stable-channel-update.html

:fear::fear:
 
Last edited:
Chrome v30.0.1599.101 released

FYI...

Chrome v30.0.1599.101 released
- https://secunia.com/advisories/55269/
Release Date: 2013-10-16
Criticality: Highly Critical
Where: From remote
Impact: Unknown, System access...
CVE Reference(s): CVE-2013-2925, CVE-2013-2926, CVE-2013-2927, CVE-2013-2928
... vulnerabilities are reported in versions prior to 30.0.1599.101.
Solution: Update to version 30.0.1599.101.
Original Advisory:
http://googlechromereleases.blogspot.com/2013/10/stable-channel-update_15.html
Oct 15, 2013 - "... This update includes 5 security fixes..."

:fear::fear:
 
Chrome v31.0.1650.48 released

FYI...

Chrome v31.0.1650.48 released
- http://googlechromereleases.blogspot.com/2013/11/stable-channel-update.html
Nov 12, 2013 - "Chrome has been updated to 31.0.1650.48 for Windows, Mac, Linux and Chrome Frame. Flash Player has been updated to 11.9.900.152, which is included w/ this release... This update includes 25 security fixes..."
___

- http://www.securitytracker.com/id/1029330
CVE Reference: CVE-2013-2931, CVE-2013-6621, CVE-2013-6622, CVE-2013-6623, CVE-2013-6624, CVE-2013-6625, CVE-2013-6626, CVE-2013-6627, CVE-2013-6628, CVE-2013-6629, CVE-2013-6630, CVE-2013-6631
Nov 12 2013
Impact: Execution of arbitrary code via network, Modification of system information, User access via network
Fix Available: Yes Vendor Confirmed: Yes
Version(s): prior to 31.0.1650.48 ...

:fear::fear:
 
Last edited:
Chrome 31.0.1650.57 released

FYI...

Chrome 31.0.1650.57 released
- http://googlechromereleases.blogspot.com/2013/11/stable-channel-update_14.html
Nov 14, 2013 - "Chrome has been updated to 31.0.1650.57 for Windows, Mac, Linux and Chrome Frame..."

- https://secunia.com/advisories/55731/
Release Date: 2013-11-15
Criticality: Highly Critical
Where: From remote
Impact: System access...
CVE Reference: https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-6632 - 9.3 (HIGH)
... vulnerabilities are reported in versions prior to 31.0.1650.57 running on Windows, Mac, Linux, and Chrome Frame.
Solution: Update to version 31.0.1650.57.
Original Advisory:
http://googlechromereleases.blogspot.com/2013/11/stable-channel-update_14.html

:fear:
 
Last edited:
Chrome 31.0.1650.63 released

FYI...

Chrome 31.0.1650.63 released
- https://secunia.com/advisories/55942/
Release Date: 2013-12-05
Criticality: Highly Critical
Where: From remote
Impact: Unknown, Hijacking, Spoofing, System access
Solution Status: Vendor Patch...
CVE Reference(s): CVE-2013-6634, CVE-2013-6635, CVE-2013-6636, CVE-2013-6637, CVE-2013-6638, CVE-2013-6639, CVE-2013-6640
... vulnerabilities are reported in versions prior to 31.0.1650.63.
Solution: Update to version 31.0.1650.63.
Original Advisory:
http://googlechromereleases.blogspot.com/2013/12/stable-channel-update.html
"... This update includes -15- security fixes..."

:fear::fear:
 
Last edited:
Chrome 32.0.1700.76 released

FYI...

Chrome 32.0.1700.76 released
- https://secunia.com/advisories/56248/
Release Date: 2014-01-14
Criticality: Highly Critical
Where: From remote
Impact: Security Bypass, Spoofing, System access
CVE Reference(s): CVE-2013-6641, CVE-2013-6642, CVE-2013-6643, CVE-2013-6644, CVE-2013-6645, CVE-2013-6646
Solution: Upgrade to a fixed version.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/01/stable-channel-update.html
"... 32.0.1700.76 for Windows and Chrome Frame and 32.0.1700.77 for Mac and Linux. This release contains a number of fixes and improvements... Flash Player has been updated to 12.0.0.41, which is included w/ this release..."

:fear::fear:
 
Chrome 32.0.1700.102 released ...

FYI...

Chrome 32.0.1700.102 released
- https://secunia.com/advisories/56640/
Release Date: 2014-01-28
Criticality: Highly Critical
Where: From remote
Impact: Unknown, System access...
CVE Reference(s):
- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-6649 - 7.5 (HIGH)
- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2013-6650 - 7.5 (HIGH)
... vulnerabilities are reported in versions prior to 32.0.1700.102.
Solution: Update to version 32.0.1700.102.
Original Advisory:
http://googlechromereleases.blogspot.com/2014/01/stable-channel-update_27.html
"... This update includes -14- security fixes..."

:fear::fear:
 
Last edited:
Chrome 32.0.1700.107 ...

FYI...

Chrome 32.0.1700.107 - Flash Player updated
- https://secunia.com/advisories/56437/
Release Date: 2014-02-06
Criticality: Highly Critical ...
Where: From remote
Impact: System access...
CVE Reference: CVE-2014-0497 ...
For more information: https://secunia.com/SA56737/
Solution: Update to version 32.0.1700.107.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update.html
"... This build contains security updates for Flash player..."

:fear:
 
Chrome 33.0.1750.117 released

FYI...

Chrome 33.0.1750.117 released
- https://secunia.com/advisories/57028/
Release Date: 2014-02-21
Criticality: Highly Critical
Where: From remote
Impact: Unknown, Exposure of sensitive information, System access
CVE Reference(s): CVE-2013-6652, CVE-2013-6653, CVE-2013-6654, CVE-2013-6655, CVE-2013-6656, CVE-2013-6657, CVE-2013-6658, CVE-2013-6659, CVE-2013-6660, CVE-2013-6661
... vulnerabilities are reported in versions prior to 33.0.1750.117.
Solution: Upgrade to version 33.0.1750.117.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/02/stable-channel-update_20.html
"... This update includes -28- security fixes..."

- http://www.securitytracker.com/id/1029813
Feb 22 2014
Impact: Disclosure of system information, Disclosure of user information, Execution of arbitrary code via network, User access via network
Fix Available: Yes Vendor Confirmed: Yes
Version(s): prior to 33.0.1750.117 ...
Impact: A remote user can create content that, when loaded by the target user, will execute arbitrary code on the target user's system.
Solution: The vendor has issued a fix (33.0.1750.117)...

:fear::fear:
 
Last edited:
Chrome 33.0.1750.146 released

FYI...

Chrome 33.0.1750.146 released
- https://secunia.com/advisories/57194/
Release Date: 2014-03-04
Criticality: Highly Critical
Where: From remote
Impact: Security Bypass, System access...
CVE Reference(s): CVE-2013-6663, CVE-2013-6664, CVE-2013-6665, CVE-2013-6666, CVE-2013-6667, CVE-2013-6668
Solution: Update to version 33.0.1750.146...
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update.html
"... This update includes -19- security fixes..."

:fear:
 
Chrome 33.0.1750.149 released

FYI...

Chrome 33.0.1750.149 released
- https://secunia.com/advisories/57164/
Release Date: 2014-03-11
Criticality: Highly Critical
Where: From remote
Impact: Unknown, Security Bypass, Cross Site Scripting, Exposure of sensitive information, System access
CVE Reference(s): CVE-2014-0503, CVE-2014-0504, CVE-2014-1700, CVE-2014-1701, CVE-2014-1702, CVE-2014-1703, CVE-2014-1704
... vulnerabilities are reported in versions prior to 33.0.1750.149.
Solution: Update to version 33.0.1750.149.
Original Advisory:
- http://googlechromereleases.blogspot.dk/2014/03/stable-channel-update_11.html
"... This update includes 7 security fixes..."

:fear:
 
Last edited:
Chrome 33.0.1750.154 released

FYI...

Chrome 33.0.1750.154 released
- https://secunia.com/advisories/57439/
Release Date: 2014-03-17
Criticality: Highly Critical
Impact: System access
Solution Status: Vendor Patch
CVE Reference(s): CVE-2014-1705, CVE-2014-1713 ...
... vulnerabilities are reported in versions prior to 33.0.1750.152 for Mac and Linux and prior to 33.0.1750.154 for Windows.
Solution: Update to a patched version.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/03/stable-channel-update_14.html
"... updated to 33.0.1750.152 for Mac and Linux and 33.0.1750.154 for Windows..."
___

Chrome for Android 33.0.1750.166 released
- https://secunia.com/advisories/57440/
Release Date: 2014-03-17
Criticality: Highly Critical
Impact: System access
Solution Status: Vendor Patch
CVE Reference(s):
- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-1705 - 7.5 (HIGH)
- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-1710 - 7.5 (HIGH)
- https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2014-1713 - 7.5 (HIGH)
For more information: https://secunia.com/SA57439/
... vulnerabilities are reported in versions prior to 33.0.1750.166.
Solution: Update to version 33.0.1750.166.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/03/chrome-for-android-update.html
"... update includes bugs we received from security researchers attending CanSecWest 2014..."

:fear::fear:
 
Last edited:
Chrome 34.0.1847.116 released

FYI...

Chrome 34.0.1847.116 released
- https://secunia.com/advisories/57506/
Release Date: 2014-04-08
Criticality: Highly Critical
Where: From remote
Impact: Unknown, Security Bypass, Cross Site Scripting, System access
CVE Reference(s): CVE-2014-1716, CVE-2014-1717, CVE-2014-1718, CVE-2014-1719, CVE-2014-1720, CVE-2014-1721, CVE-2014-1722, CVE-2014-1723, CVE-2014-1724, CVE-2014-1725, CVE-2014-1726, CVE-2014-1727, CVE-2014-1728, CVE-2014-1729
Solution: Upgrade to version 34.0.1847.116.
Original Advisory:
- http://googlechromereleases.blogspot.dk/2014/04/stable-channel-update.html
"... Flash Player has been updated to 13.0.0.182, which is included w/ this release...
This update includes -31- security fixes..."

:fear:
 
Chrome 34.0.1847.131 released

FYI...

Chrome 34.0.1847.131 released
- https://secunia.com/advisories/58301/
Release Date: 2014-04-28
Criticality: Highly Critical
Where: From remote
Impact: Unknown, System access...
CVE Reference(s): CVE-2014-1730, CVE-2014-1731, CVE-2014-1732, CVE-2014-1733, CVE-2014-1734, CVE-2014-1735
Solution: Update to version 34.0.1847.131 for Windows and Mac or version 34.0.1847.132 for Linux.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/04/stable-channel-update_24.html
"... This release also contains a Flash Player update, to version 13.0.0.206... This update includes 9 security fixes..."

:fear::fear:
 
Chrome 34.0.1847.137 released

FYI...

Chrome 34.0.1847.137 released
- https://secunia.com/advisories/58312/
Release Date: 2014-05-13
Criticality: Highly Critical
Where: From remote
Impact: Security Bypass, System access
CVE Reference(s): CVE-2014-0510, CVE-2014-0516, CVE-2014-0517, CVE-2014-0518, CVE-2014-0519, CVE-2014-0520, CVE-2014-1740, CVE-2014-1741, CVE-2014-1742
For more information: https://secunia.com/SA58074/
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/05/stable-channel-update.html
"... This release also contains a Flash Player update, to version 13.0.0.214... This update includes 3 security fixes..."

:fear:
 
Chrome 35.0.1916.114 released

FYI...

Chrome 35.0.1916.114 released
- http://www.securitytracker.com/id/1030270
CVE Reference: CVE-2014-1743, CVE-2014-1744, CVE-2014-1745, CVE-2014-1746, CVE-2014-1747, CVE-2014-1748, CVE-2014-1749, CVE-2014-3152
May 22 2014
Impact: Disclosure of system information, Disclosure of user information, Execution of arbitrary code via network, Modification of user information, User access via network
Fix Available: Yes Vendor Confirmed: Yes
Version(s): prior to 35.0.1916.114...
Solution: The vendor has issued a fix (35.0.1916.114).
The vendor's advisory is available at:
- http://googlechromereleases.blogspot.com/2014/05/stable-channel-update_20.html
"... This update includes -23- security fixes..."

:fear::fear:
 
Last edited:
Chrome for Android 35.0.1916.141 released

FYI...

Chrome for Android 35.0.1916.141 released
- https://secunia.com/advisories/57709/
Release Date: 2014-06-09
Criticality: Highly Critical
Where: From remote
Impact: Manipulation of data, Exposure of sensitive information, System access
CVE Reference(s): CVE-2014-0195, CVE-2014-0221, CVE-2014-0224, CVE-2014-3470
For more information: https://secunia.com/SA58403/
... security issue and vulnerability are reported in versions prior to 35.0.1916.141.
Solution: Upgrade to version 35.0.1916.141.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/06/chrome-for-android-update.html
___

- http://threatpost.com/android-ransomware-first-to-encrypt-data-on-mobile-devices/106535
June 9, 2014

:fear:
 
Last edited:
Chrome 35.0.1916.153 released

FYI...

Chrome 35.0.1916.153 released
- https://secunia.com/advisories/58585/
Release Date: 2014-06-10
Criticality: Highly Critical
Where: From remote
Impact: Unknown, Security Bypass, Cross Site Scripting, System access
Solution Status: Vendor Patch
CVE Reference(s): CVE-2014-0531, CVE-2014-0532, CVE-2014-0533, CVE-2014-0534, CVE-2014-0535,
CVE-2014-0536, CVE-2014-3154, CVE-2014-3155, CVE-2014-3156, CVE-2014-3157
... vulnerabilities are reported in versions prior to 35.0.1916.153.
Solution: Update to version 35.0.1916.153.
Original Advisory:
- http://googlechromereleases.blogspot.com/2014/06/stable-channel-update.html
June 10, 2014 - "... This update includes 4 security fixes..."
___

- http://googlechromereleases.blogspot.com/2014/07/flash-player-update.html
July 8, 2014 - "We are updating Flash Player to version 14.0.0.145 on Windows and Mac via our component update system (i.e. there will not be a Chrome update)..."

:fear:
 
Last edited:
Back
Top