News
Contributed by: Lauren Gerber
Date: July 20, 2009
These days people seem to be changing their browsers almost as frequently as they change their clothing. Each browser has its own set of advantages and disadvantages and there is no one perfect browser. When Google Chrome was released last year, there was a lot of hype and many people made the big "change over". Unfortunately, one of the latest vulnerabilities has been discovered in Google Chrome. This vulnerability takes place due to an error that occurs when processing regular expressions within the JavaScript. If this is successfully exploited by malicious people, the systems of chosen users may be compromised. This could then result in not only corrupt memory but also a shocking heap based buffer overflow. Inclusive to the many products Google has released is the wonderful Google Desktop. Google Desktop is a fantastic search software that was made by Google, specifically for Mac OS X, Linux, as well as Microsoft Windows. Some of the files of Google Desktop include the following: a0002231.exe, GoogleDesktop.exe, GoogleDesktopDeskbar2.dll, GoogleDesktopIndex.exe as well asGoogleDesktopHyper.dll .One of the files of Google Chrome is: chrome.exe. If this Google Chrome vulnerability is exploited successfully then the risk of arbitrary code execution taking place is extremely high. It is also vital for users to understand that an additional error may be exploited in order to bypass the Google Chrome sandbox. This vulnerability has been confirmed in versions prior to 2.0.172.37. All Google Chrome users have been strongly advised to update to version 2.0.172.37. This vulnerability has been rated as highly critical. We are all very lucky that the Google Chrome security team picked up this issue and has already alerted us on how to go about moderating it. I will leave you with a very thought provoking question: What do you think the future of web browsers will be like ten years from now? I will leave you to ponder that question and let your imaginations run wild. |
|||||
Software Downloads




User Comments