BetaONE will rise again!


Reply
  #1  
Old 21st Sep 05, 02:30 PM
NewsBot's Avatar
NewsBot NewsBot is offline
Senior Member
 
Join Date: Oct 2004
Posts: 30,858
NewsBot will become famous soon enough
Extremely Critical Firefox Advisory: Update!
Another flaw has been posted to Secunia, a trend for the past few days at least, to show that the Mozilla 'honeymoon' is over and that it's browser is as vulnerable as any other popular one on the market. Previously Mozilla had a good track record for being one of the more secure browsers, simply because it wasn't used enough. That all changed when Mozilla released Firefox, people now work around the clock finding its holes and exploits, with a larger userbase being affected.

It's important to note however that today's 1.0.7 release contains a fix. Mozilla deserve credit and have repeatedly shown they are quick to respond to its exploits.

Peter Zelezny has discovered a vulnerability in Firefox, which can be exploited by malicious people to compromise a user's system.

The vulnerability is caused due to the shell script used to launch Firefox parsing shell commands that are enclosed within backticks in the URL provided via the command line. This can e.g. be exploited to execute arbitrary shell commands by tricking a user into following a malicious link in an external application which uses Firefox as the default browser (e.g. the mail client Evolution on Red Hat Enterprise Linux 4).

View: The Secunia Advisory
View: Neowin Coverage: Firefox 1.0.7 ReleasedRead full story...

News source: Full Story
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Neowin Member Interview: Asa Dotzler - Firefox Developer NewsBot NeoWin News 0 20th Jul 05 10:30 PM
Firefox suffers first 'extremely critical' security hole NewsBot NeoWin News 0 10th May 05 07:30 PM
Firefox breaks 25 million downloads in less than 100 days NewsBot NeoWin News 0 18th Feb 05 08:30 AM
Firefox: The Road Ahead NewsBot NeoWin News 0 15th Jan 05 03:00 AM
Critical Update for Windows XP (KB887811) NewsBot NeoWin News 0 23rd Oct 04 10:00 AM


All times are GMT +1. The time now is 09:06 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2024, Jelsoft Enterprises Ltd.