Google fixes risky Chrome bugs

By Matthew Broersma, ZDNet UK
Tuesday, November 10, 2009 11:19 AM

Google has updated its Chrome browser to fix a critical bug that could allow an attacker to execute malicious code on a user's system.

The update also fixes a bug that could allow the execution of malicious JavaScript code.

Chrome 3.0.195.32, released on Thursday, fixes a bug in the browser's implementation of the Gears SQL application programming interface (API) that could allow a malicious Web site to crash the Gears plug-in and possibly execute malicious code on a user's system, Google said in an advisory.

Gears is a Google-directed open-source project that enables offline support and other features for Web applications.

The bug could allow a malicious site to use the Gears SQL API to maliciously craft SQL metadata, which could cause a memory corruption, Google said. This could cause the Gears plug-in to crash or possibly allow the execution of malicious code.

Read more of "Google fixes risky Chrome bugs" at ZDNet UK.


WORTHWHILE?

0

0 votes
Blog

Talkback 0 comments

There are currently no comments for this post.


Tech Jobs Now!

Search for your ideal tech job:

Reviewing scheduled task inventory for Windows Server 2008 R2

Windows Server

Default installations of Windows Server 2008 R2 enumerate a number of default scheduled tasks, many of which you may not need.


Read more »



Don't CC me, I'll CC you

Blog thumbnail

Carbon paper fascinated me when I was younger. Write once, get two copies. What a great invention and work tool, I thought.

Then came e-mail, and making carbon copies of important..... by Eileen Yu

Read more »

Tags

  1. attack
  2. authentication and encryption
  3. blog
  4. data security
  5. e - mail
  6. hacking
  7. internet
  8. malware
  9. microsoft corp.
  10. network
  11. network security
  12. pc security
  13. researcher
  14. security
  15. security management
  16. software
  17. spam and phishing
  18. symantec corp.
  19. viruses and worms
  20. web