, to version 13.0.0.214.
Security Fixes and Rewards
This update includes
3 security fixes. Below, we highlight fixes that were either contributed by external researchers or particularly interesting. Please see the
Chromium security page for more information.
[
$2000]
[358038]
High CVE-2014-1740: Use-after-free in WebSockets.
Credit to Collin Payne.
[
$1500][
349898]
High CVE-2014-1741: Integer overflow in DOM ranges.
Credit to John Butler.
[
$1000][
356690]
High CVE-2014-1742: Use-after-free in editing.
Credit to cloudfuzzer.
Two of the bugs above were detected using
AddressSanitizer.
This release fixes a number of crashes and other bugs. A full list of changes is available in the
SVN log. If you find a new issue, please let us know by
filing a bug.
Daniel Xie
Google Chrome