{"id":4170,"date":"2024-03-28T15:24:48","date_gmt":"2024-03-28T14:24:48","guid":{"rendered":"http:\/\/pclos.janu.hu\/?p=4170"},"modified":"2024-03-28T15:24:48","modified_gmt":"2024-03-28T14:24:48","slug":"kritikus-biztonsagi-resek-a-chrome-ban","status":"publish","type":"post","link":"http:\/\/pclos.janu.hu\/?p=4170","title":{"rendered":"Kritikus biztons\u00e1gi r\u00e9sek a Chrome-ban"},"content":{"rendered":"<p>\u00cdrta: Ulrich Bantle<br \/>\nLinux Magazine online &#8211; 2024. m\u00e1rcius 27<\/p>\n<p style=\"text-align: justify;\">A <a href=\"https:\/\/chromereleases.googleblog.com\/2024\/03\/stable-channel-update-for-desktop_26.html\" target=\"_blank\" rel=\"noopener\"><strong>Google<\/strong> nyilv\u00e1noss\u00e1gra hoz n\u00e9h\u00e1ny r\u00e9szletet<\/a> n\u00e9gy biztons\u00e1gi r\u00e9sr\u0151l, amelyeket k\u00fcls\u0151 szak\u00e9rt\u0151k tal\u00e1ltak. A probl\u00e9m\u00e1k kritikus vagy magas kock\u00e1zat\u00fa besorol\u00e1s\u00faak.<!--more--><\/p>\n<p style=\"text-align: justify;\">A kritikus kock\u00e1zat\u00e9rt\u00e9kel\u00e9s probl\u00e9m\u00e1ja az Angle-ben, a b\u00f6ng\u00e9sz\u0151 grafikus megjelen\u00edt\u0151j\u00e9ben rejlik. Ott a Google szerint mem\u00f3ria felszabad\u00edt\u00e1s ut\u00e1ni haszn\u00e1lat probl\u00e9ma lehet. A Use-After-Free (UAF &#8211; felszabad\u00edt\u00e1s ut\u00e1ni haszn\u00e1lat) olyan biztons\u00e1gi r\u00e9sekre utal, amelyek akkor l\u00e9pnek fel, ha a dinamikus mem\u00f3ria helytelen\u00fcl ker\u00fcl felhaszn\u00e1l\u00e1sra a program v\u00e9grehajt\u00e1sa sor\u00e1n. A mem\u00f3ria megfelel\u0151 felszabad\u00edt\u00e1sa helyett egy mutat\u00f3 marad erre a mem\u00f3riater\u00fcletre, amelyet a t\u00e1mad\u00f3 kihaszn\u00e1lhat.<\/p>\n<p style=\"text-align: justify;\">A k\u00f6zlem\u00e9ny szerint tov\u00e1bbi biztons\u00e1gi hi\u00e1nyoss\u00e1gok vannak a Dawnban, a WebGPU megval\u00f3s\u00edt\u00e1s\u00e1ban. Ott is tal\u00e1ltak egy haszn\u00e1lat ut\u00e1ni h\u00e9zagot. Ez vonatkozik a web kodekekre is.<\/p>\n<p style=\"text-align: justify;\">A Google a k\u00fcls\u0151 kutat\u00f3k \u00e1ltal azonos\u00edtott negyedik hi\u00e1nyoss\u00e1gk\u00e9nt a WebAssembly t\u00edpus-zavar\u00e1t eml\u00edti.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u00cdrta: Ulrich Bantle Linux Magazine online &#8211; 2024. m\u00e1rcius 27 A Google nyilv\u00e1noss\u00e1gra hoz n\u00e9h\u00e1ny r\u00e9szletet n\u00e9gy biztons\u00e1gi r\u00e9sr\u0151l, amelyeket k\u00fcls\u0151 szak\u00e9rt\u0151k tal\u00e1ltak. A probl\u00e9m\u00e1k kritikus vagy magas kock\u00e1zat\u00fa besorol\u00e1s\u00faak.<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[51],"tags":[123,147,163],"class_list":["post-4170","post","type-post","status-publish","format-standard","hentry","category-egyeb-irasok","tag-123","tag-biztonsag","tag-chrome"],"_links":{"self":[{"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/posts\/4170","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4170"}],"version-history":[{"count":1,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/posts\/4170\/revisions"}],"predecessor-version":[{"id":4171,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=\/wp\/v2\/posts\/4170\/revisions\/4171"}],"wp:attachment":[{"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4170"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4170"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/pclos.janu.hu\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4170"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}