Thursday, July 31, 2008

Mozilla Firefox 3.0 Vulnerability

Code execution vulnerability found in latest Firefox 3.0 could allow an attacker to execute arbitrary code, permitting the attacker to completely take over the vulnerable process, potentially allowing the machine running the process to be completely controlled by the attacker. The flaw found in Firefox 3.0 is considered a high-severity risk and affects earlier versions of Firefox 2, including the latest 2.0.0.14.

The vulnerability does not come exclusively in Firefox 3.0 rather it has also been diagnosed in early versions of Firefox 2.0.x. This exploit was discovered within 5 hours of the official release of Firefox 3.0 on June 17th.

While Mozilla is working on a fix, we wont be divulging anything else until a patch is available, adhering to our vulnerability disclosure policy.

1 comments:

Anonymous said...

I still use FireFox for entrecard though (because it has the toolbar) but other than that i have switched to Google Chrome which does appear to be faster than IE and Mozilla.

website counter