Lucene search

K
chromeHttps://chromereleases.googleblog.comGCSA-326272106400114863
HistoryJan 14, 2014 - 12:00 a.m.

Stable Channel Update for Chrome OS

2014-01-1400:00:00
https://chromereleases.googleblog.com
chromereleases.googleblog.com
14

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.005 Low

EPSS

Percentile

75.8%

The Stable channel has been updated to 32.0.1700.95 (Platform version: 4920.71.0) for all Chrome OS devices except Chromebook Pixel, which is expected in the upcoming days. This build contains a number of bug fixes, security updates and feature enhancements. Systems will be receiving updates over the next several days.

Some highlights of these changes are:

  • When pressing the overview mode button (F5), you will see an organized view of their windows.
  • Pro-tip: Also works with three finger gesture
  • Sync/Auth failures notifications on Chrome OS are now a part of the notifications system.
  • Get Help app has been updated to include a “Discover” section.
  • The new auto-click feature, which will generate a click after the mouse pointer is moved, is now available via Accessibility settings.
  • You can now use supervised users to help family members who may need some guidance browsing the web. Once you create a supervised user, you can visit chrome.com/manage to review the supervised user's browsing activity and determine site restrictions.

Security fixes and rewards:

We highlight fixes contributed by external researchers or particularly interesting. Please see the Chromium security page for more information.

  • [$5000][321940] High CVE-2013-6643: Unprompted sync with an attacker's Google account. Credit to Joao Lucas Melo Brasio.
    If you find new issues, please let us know by visiting our forum or filing a bug. Interested in switching channels? Find out how. You can submit feedback using 'Report an issue…' in the Chrome menu (3 horizontal bars in the upper right corner of the browser).

Matthew Yuan
Google Chrome

Affected configurations

Vulners
Node
googlechrome_osRange<32.0.1700.95
CPENameOperatorVersion
chrome oslt32.0.1700.95

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

0.005 Low

EPSS

Percentile

75.8%