GOOGLE has released Chrome 154 to the stable channel, fixing 108 security vulnerabilities, including 11 rated critical. The critical flaws include buffer overflows in ANGLE and WebGL, out-of-bounds writes in GPU and WebGL, and use-after-free vulnerabilities affecting ServiceWorker, Fullscreen, WindowDialog and AdFilter. Nine of the critical issues were reported by external researchers.
Overall, 32 vulnerabilities came from external reports, with Google awarding $18,000 in bug bounty payments so far; the final total may increase because rewards for most externally reported issues have not yet been decided.
The update also addresses 25 high-severity vulnerabilities, including 12 use-after-free flaws and several type confusion, uninitialised resource and buffer overflow bugs. Other high-severity issues involved authorisation, UI interpretation, output encoding, race conditions and out-of-bounds writes. The remaining vulnerabilities are rated medium or low severity and relate to authorisation, input validation, UI misrepresentation, memory corruption, information leaks and memory safety.
Google did not say that any of the patched flaws had been exploited in the wild, but advised users to update as soon as possible. Chrome 154.0.8037.57/.58 is rolling out for Windows and macOS, while Linux receives version 154.0.8037.57.