
Skia provides Chrome with APIs for rendering graphics, text, shapes, images, and animations, making it a crucial component of the browser's rendering pipeline. A relaunch of the application is necessary to complete the update.ĬVE-2023-2136 is a high-severity integer overflow vulnerability in Skia, a Google-owned open-source multi-platform 2D graphics library written in C++. Otherwise, updates will be installed automatically the next time the browser starts, without requiring user intervention. To update Chrome manually, users can head to the settings menu and select Help → About Google Chrome. The Linux version will be released "soon," according to Google. The company stated in a security bulletin, "Google is aware that an exploit for CVE-2023-2136 exists in the wild." The new version of Chrome, 1.137, fixes a total of eight vulnerabilities and is currently available for Windows and Mac users. The update is rolling out now, and is also available to download from the Google Chrome website.Google has released a security update for its Chrome web browser to address the second zero-day vulnerability discovered to be exploited in attacks this year. More details on the Google Chrome release blog post. Anything you run in a popped-out floating windows can be pinned to appear on top of your other windows. These changes are modest but do a better job of listing the benefits of Chrome sync.įor the adventurous, enable the chrome://flags/#document-picture-in-picture-api flag and you can use picture-in-picture mode with non-video web content.


Although the API isn’t yet supported by other web browsers, Google developed it with the W3C’s CSS working group.Įlsewhere, minor UI tweaks have been applied to the Google Chrome Sync interstitial (which you won’t notice if you’re already signed in), as spotted by About Chromebook’s Kevin Tofel. This provides engaging, fluid transitions between different states within their web applications. Web developers get access to a new View Transitions API. Security aside, there aren’t many new features included in the latest update. This allowed a remote attack to potentially exploit heap corruption using a simple HTML page.

A new version of Google Chrome is now available, with the update rolling out to existing users on Windows, macOS, and Linux.Ĭhrome 111 release includes 40 assorted security fixes, 8 of which are high-severity.
