Shabas pcsecurity
Keeping your computer more secure
Jun 12, 2009
Apr 28, 2009
Apr 22, 2009
Mar 7, 2009
Dec 17, 2008
Nov 13, 2008
Sep 24, 2008
Jul 17, 2008
Jun 24, 2008
Unpatched vulnerability in Firefox 3
This was originally published by TippingPoint. Chances are that this
vulnerability can be used by attacker in a way that he can execute own commands in that system. But risk is not that great as user needs to visit first hostile web site.
Mozilla has confirmed vulnerability but thinks that risk is quite minimal. Same vulnerability is also in version 2 of Firefox.
Labels: firefox, vulnerabilities
Jun 19, 2008
Apr 17, 2008
Mar 26, 2008
Feb 8, 2008
Mozilla Firefox 2.0.0.12 released
Mozilla Firefox 2.0.0.12 has been released yesterday.
It fixes these vulnerabilities
See release notes and download Firefox 2.0.0.12 here
Jan 30, 2008
0-day vulnerability in Firefox
Larry Dignan wrote in his blog about Firefox vulnerability that allows to collect session information, including session cookies and session history. Firefox is not vulnerable by default but via addons.
This means that Firefox can leak information which allows attacker to load any javascript file on a machine.
List of add-ons
is quite long so most of Firefox users might have one or more of those.
Mozilla security chief Window Snyder said that this will be corrected in 2.0.0.12
version which should be released soon.
Other links related to issue:
Link 1
Link 2
Labels: browsers, firefox, vulnerabilities
Dec 3, 2007
Nov 29, 2007
Firefox 2.0.0.10 released
Firefox 2.0.0.10 fixes three vulnerabilities
One of them fixes cross site scripting -vulnerability which is related to jar prorocol.
Second one fixes 3 memory corruption bugs which affect browser stability and which can be used in certain situations to execute malicious code.
Third one fixes referer-spoofing via window.location race condition. This means that browser can announce wrong referer to used site. This can be used to pass security mechanisms of web services which wait for right referer.
Download Firefox
Nov 2, 2007
Firefox 2.0.0.9 released
Firefox 2.0.0.9 was released yesterday.
This release corrects problems
that were found in Firefox 2.0.0.8.
Download Firefox
Oct 19, 2007
Firefox 2.0.0.8 released
In new Firefox version there have been fixed 8 vulnerabilities, two of them classified as critical, four of them as moderate and other two as low.
One of the moderate vulnerabilities is related to URIs with invalid %-encoding mishandled by Windows. This has already been fixed in 2.0.0.6 version. However, that patch didn't prevent the incorrect file-handling programs from launching which cause some risk.
2.0.0.8 has also support for Mac OS X 10.5 (Leopard) with some known issues affecting some media plugins.
Download latest version of Firefox