Google Chrome 57.0

Une nouvelle version de Google Chrome vient tout juste de sortir. Cette version 57.0 introduit quelques nouveautés principalement destinées aux développeurs.

En effet, les développeurs de Chrome ont ajouté le support du CSS Grid Layout, pour rendre son site compatible sur tous les écrans, ainsi que l'API Media Session permettant de personnaliser les notifications sur mobile afin d'y ajouter des images et des contrôles.

Mais ce n'est pas tout, voici une courte liste de modifications apportées à Chrome 57.0 :

  • There are some improvements to the Payment Request API.
  • You can specify the color of the text input cursor with the caret-color property.
  • Visual effects such as line color and style can be specified with new text-decoration properties.
  • The Fetch API Response class now supports the .redirected attribute to help avoid untrustworthy responses and reduce the risk of open redirectors.
  • All -webkit- prefixed IndexedDB global aliases have been removed, after their deprecation in M38.
  • And one of my favorites — new padStart and padEnd formatting methods that simplify string padding when aligning console output or printing numbers with a fixed number of digits.
Voir les notes de versions de Chrome 57.0

De plus, des failles de sécurité ont été corrigés... et comme d'habitude, chez Google, ces découvertes sont récompensées :

[$7500][682194] High CVE-2017-5030: Memory corruption in V8. Credit to Brendon Tiszka
[$5000][682020] High CVE-2017-5031: Use after free in ANGLE. Credit to Looben Yang
[$3000][668724] High CVE-2017-5032: Out of bounds write in PDFium. Credit to Ashfaq Ansari - Project Srishti
[$3000][676623] High CVE-2017-5029: Integer overflow in libxslt. Credit to Holger Fuhrmannek
[$3000][678461] High CVE-2017-5034: Use after free in PDFium. Credit to Ke Liu of Tencent's Xuanwu LAB
[$3000][688425] High CVE-2017-5035: Incorrect security UI in Omnibox. Credit to Enzo Aguado
[$3000][691371] High CVE-2017-5036: Use after free in PDFium. Credit to Anonymous
[$1000][679640] High CVE-2017-5037: Multiple out of bounds writes in ChunkDemuxer. Credit to Yongke Wang of Tencent's Xuanwu Lab (xlab.tencent.com)
[$500][679649] High CVE-2017-5039: Use after free in PDFium. Credit to jinmo123
[$2000][691323] Medium CVE-2017-5040: Information disclosure in V8. Credit to Choongwoo Han
[$1000][642490] Medium CVE-2017-5041: Address spoofing in Omnibox. Credit to Jordi Chancel
[$1000][669086] Medium CVE-2017-5033: Bypass of Content Security Policy in Blink. Credit to Nicolai Grødum
[$1000][671932] Medium CVE-2017-5042: Incorrect handling of cookies in Cast. Credit to Mike Ruddy
[$1000][695476] Medium CVE-2017-5038: Use after free in GuestView. Credit to Anonymous
[$1000][683523] Medium CVE-2017-5043: Use after free in GuestView. Credit to Anonymous
[$1000][688987] Medium CVE-2017-5044: Heap overflow in Skia. Credit to Kushal Arvind Shah of Fortinet's FortiGuard Labs
[$500][667079] Medium CVE-2017-5045: Information disclosure in XSS Auditor. Credit to Dhaval Kapil (vampire)
[$500][680409] Medium CVE-2017-5046: Information disclosure in Blink. Credit to Masato Kinugawa

Pour passer à Chrome 57.0, il suffit de laisser le navigateur télécharger sa mise à jour, cela devrait (au pire) prendre quelques jours. Pour les plus impatients, ils peuvent utiliser le lien ci-dessous :

Télécharger Google Chrome 57.0

Poster un Commentaire

Soyez le premier à commenter !

Me notifier des
avatar
wpDiscuz