To all IT Professionals,


Google has released Google Chrome 30.0.1599.101 for Windows, Mac, Linux and Chrome Frame operating systems to address multiple vulnerabilities. These vulnerabilities could allow a remote attacker to cause a denial-of-service condition or trigger multiple conflicting uses of the same object.

US-CERT encourages users and administrators to review the Google Chrome Release blog entry and update to Chrome 30.0.1599.101.



Google Chrome Release:


This update includes 5 security fixes. Below, we highlight fixes that were either contributed by external researchers or particularly interesting. Please see the Chromium security page for more information.

High CVE-2013-2925: Use after free in XHR. Credit to Atte Kettunen of OUSPG.

High CVE-2013-2926: Use after free in editing. Credit to cloudfuzzer.

High CVE-2013-2927: Use after free in forms. Credit to cloudfuzzer.