In addition to the security patches the Google Chrome 5.0.375.125 update also includes workarounds for two critical vulnerabilities where the root cause lies in external components -- a Windows kernel bug and a glibc vulnerability.
The patch is available for Linux, Mac, Windows and Chrome Frame.Technical details on the vulnerabilities are being withheld until the update is pushed out to end users. Here's what we know right now:
-  Medium Memory contents disclosure in layout code. Credit to Michail Nikolaev.
-  High Issue with large canvases. Credit to sp3x of SecurityReason.com.
-  High Memory corruption in rendering code. Credit to Jose A. Vazquez.
-  High Memory corruption in SVG handling. Credit to Aki Helin of OUSPG.
-  Low Avoid hostname truncation and incorrect eliding. Credit to Google Chrome Security Team (Inferno).
Google paid a bounty of $4674 for this batch of security vulnerabilities.