Security:
Find ItTrack It |
Firefox under fire from multiple security bugs21 reasons to update Mozilla softwarePublished Tuesday 18th April 2006 10:05 GMT The Mozilla Foundation has warned of a slew of critical vulnerabilities to its popular Firefox web browser and related products. The most serious of the flaws create a means for hackers to inject malware onto vulnerable systems. Other flaws would make it easier to construct phishing attacks or swipe sensitive information from PCs running Firefox. Mozilla products fail to properly enforce security restrictions in JavaScript and are subject to memory corruption via maliciously constructed HTML tags. There's also problems with how the products handle Cascading Style Sheets which leave open security holes that might allow the execution of arbitrary code on a vulnerable system. US CERT has produced a useful overview of the vulnerabilities, the most extensive ever to affect Mozilla products, here. Secunia documents the 21 vulns here. Users are advised to upgrade to Mozilla Firefox 1.5.0.2, Mozilla Thunderbird 1.5.0.2, or SeaMonkey 1.0.1 to guard against attack. A security update to the Thunderbird email client (version 1.5.0.2) is due to be released on Tuesday. ® 19 comments posted — Comment period finished Why the ebay.de advert?!Posted: 10:14 18th April 2006 Not the full story...Posted: 11:01 18th April 2006 Way to sensationalise, guys.Posted: 11:13 18th April 2006 Cannot be directly compared with IEPosted: 11:16 18th April 2006 So much for being more secure than ie ...Posted: 11:35 18th April 2006
Track this type of story as a custom Atom/RSS feed or by email.
|
Latest InfoSec News
More Security News
|
|
Top 20 stories • All The Week’s Headlines • Archive • Search