Chrome Dev for Android Update

Hi everyone! We've just released Chrome Dev 110 (110.0.5481.29) for Android. It's now available on Google Play.

You can see a partial list of the changes in the Git log. For details on new features, check out the Chromium blog, and for details on web platform updates, check here.

If you find a new issue, please let us know by filing a bug.

Krishna Govind
Google Chrome

Guest Blog: The Science of Fun: Inside Thinkery’s Quest for Joyful Learning

Google Fiber’s Community Connection program provides gigabit internet service to nonprofit partners. Today, Shaleiah Fox, Chief Advancement Officer with Thinkery, an Austin-based STEAM learning experience for children, shares how the museum is using this program to power discovery and exploration for Austin’s kids. 


Article:

Working at Thinkery is different from any job I’ve ever had. To start, we’re the most visited cultural institution here in Austin, Texas, and we’re dedicated to inspiring joyful learning for children. In and of itself working at Thinkery is an incredibly unique experience. But it’s really being a part of a team that works to make inspiring learning accessible to all children and families here in Central Texas that makes it a dream. 


Thumbnail


If you’ve visited our museum, you know you’re in for a day full of hands-on, thought provoking play and knowledge building. We’re a philanthropic hub for play-based STEAM learning, creativity, and imagination housed inside a 40,000 square foot facility in the heart of Austin. 



In 2013, the Austin Children's Museum rebranded to Thinkery and moved from downtown Austin to the Mueller area and became a Google Fiber Community Connection. We have a responsibility to make sure that all children in Central Texas have access to joyful learning experiences. Being a Community Connection allows us to reach more people who need to know about Thinkery and to create a more inclusive experience for them.


Inside our walls, being a Google Fiber Community Connection means keeping our kids connected to their learning pursuits. An example of this is Our Stop Motion Animation Exhibit, which allows kids to come in and create their own movies. Once they do, they can upload and send those videos to themselves or family to showcase what they’ve created. Everything we do here at Thinkery is designed so that a lifelong learning connection doesn’t stop when you leave our museum doors. In a way, our Stop Motion Animation exhibit is a physical manifestation of the way in which we keep that promise — and it’s powered by the internet. 


At the end of the day, seeing the smile on a kid’s face when they learn something new or have a new experience makes every piece of effort we put into our programming just that much more worth it. We’re incredibly proud of the work we do for our Central Texas community. 


Posted by Shaleiah Fox, Chief Advancement Officer, Thinkery 


Extended Stable Channel Update for Desktop

 The Extended Stable channel has been updated to 108.0.5359.179 for Windows and Mac which will roll out over the coming days/weeks.

A full list of changes in this build is available in the log. Interested in switching release channels? Find out how here. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues.


Prudhvikumar Bommana
Google Chrome

Stable Channel Update for Desktop

The Chrome team is delighted to announce the promotion of Chrome 109 to the stable channel for Windows, Mac and LinuxThis will roll out over the coming days/weeks.



Chrome 109.0.5414.74 (linux),
109.0.5414.74/.75( Windows) and 109.0.5414.87(Mac)  contains a number of fixes and improvements -- a list of changes is available in the log. Watch out for upcoming Chrome and Chromium blog posts about new features and big efforts delivered in 109.


Security Fixes and Rewards

Note: Access to bug details and links may be kept restricted until a majority of users are updated with a fix. We will also retain restrictions if the bug exists in a third party library that other projects similarly depend on, but haven’t yet fixed.


This update includes 17 security fixes. Below, we highlight fixes that were contributed by external researchers. Please see the Chrome Security Page for more information.


[$4000][1353208] High CVE-2023-0128: Use after free in Overview Mode. Reported by Khalil Zhani on 2022-08-16

[$2000][1382033] High CVE-2023-0129: Heap buffer overflow in Network Service. Reported by asnine on 2022-11-07

[$5000][1370028] Medium CVE-2023-0130: Inappropriate implementation in Fullscreen API. Reported by Hafiizh on 2022-09-30

[$3000][1357366] Medium CVE-2023-0131: Inappropriate implementation in iframe Sandbox. Reported by NDevTK on 2022-08-28

[$3000][1371215] Medium CVE-2023-0132: Inappropriate implementation in Permission prompts. Reported by Jasper Rebane (popstonia) on 2022-10-05

[$3000][1375132] Medium CVE-2023-0133: Inappropriate implementation in Permission prompts. Reported by Alesandro Ortiz on 2022-10-17

[$2500][1385709] Medium CVE-2023-0134: Use after free in Cart. Reported by Chaoyuan Peng (@ret2happy) on 2022-11-17

[$2500][1385831] Medium CVE-2023-0135: Use after free in Cart. Reported by Chaoyuan Peng (@ret2happy) on 2022-11-18

[$2000][1356987] Medium CVE-2023-0136: Inappropriate implementation in Fullscreen API. Reported by Axel Chong on 2022-08-26

[$TBD][1399904] Medium CVE-2023-0137: Heap buffer overflow in Platform Apps. Reported by avaue and Buff3tts at S.S.L. on 2022-12-10

[$8000][1346675] Low CVE-2023-0138: Heap buffer overflow in libphonenumber. Reported by Michael Dau on 2022-07-23

[$2000][1367632] Low CVE-2023-0139: Insufficient validation of untrusted input in Downloads. Reported by Axel Chong on 2022-09-24

[$1000][1326788] Low CVE-2023-0140: Inappropriate implementation in File System API. Reported by harrison.mitchell, cybercx.com.au  on 2022-05-18

[$1000][1362331] Low CVE-2023-0141: Insufficient policy enforcement in CORS. Reported by scarlet on 2022-09-12


We would also like to thank all security researchers that worked with us during the development cycle to prevent security bugs from ever reaching the stable channel.

As usual, our ongoing internal security work was responsible for a wide range of fixes:

  • [1406081] Various fixes from internal audits, fuzzing and other initiatives


Many of our security bugs are detected using AddressSanitizer, MemorySanitizer, UndefinedBehaviorSanitizer, Control Flow Integrity, libFuzzer, or AFL.



Interested in switching release channels?  Find out how here. If you find a new issue, please let us know by filing a bug. The community help forum is also a great place to reach out for help or learn about common issues.




Prudhvikumar Bommana
Google Chrome

Chrome Stable for iOS Update

Hi everyone! We've just released Chrome Stable 109 (109.0.5414.83) for iOS; it'll become available on App Store in the next few hours.

This release includes stability and performance improvements. You can see a full list of the changes in the Git log. If you find a new issue, please let us know by filing a bug.

Erhu Akpobaro
Google Chrome

Bid Manager API v1.1 sunset reminder

As announced in August 2022, Bid Manager (DBM) API v1.1 will sunset on February 28, 2023. Please migrate to v2 before the sunset date to avoid an interruption of service.

You can read our release notes for more information about v2. Follow the steps in our v2 migration guide to help you migrate from v1.1 to v2.

If you run into issues or need help with your migration, please contact us using our support contact form.

Chrome Beta for Android Update

Hi everyone! We've just released Chrome Beta 109 (109.0.5414.85) for Android. It's now available on Google Play.

You can see a partial list of the changes in the Git log. For details on new features, check out the Chromium blog, and for details on web platform updates, check here.

If you find a new issue, please let us know by filing a bug.

Krishna Govind
Google Chrome

Improvements to voice features in Google Docs and Slides

What’s changing

We’re improving the features that enable you to: 
These enhancements will help reduce transcription errors and minimize lost audio during transcription. The improvements also include expanded availability to most major browsers. Additionally, captions in Slides will now contain automatically generated punctuation.


Who’s impacted 

End users 


Why it’s important 

We hope this launch leads to more inclusive and accessible user interactions within Docs and Slides. 


Getting started 

Rollout pace 

Availability 

  • Available to all Google Workspace customers, as well as legacy G Suite Basic and Business customers 
  • Available to users with personal Google Accounts 

Resources