CyberInsecure.com

Daily cyber threats and internet security news alerts
July 2nd, 2008

Mozilla Fixes 12 Security Vulnerabilities In Firefox 2.0.0.15

Mozilla have released Firefox 2.0.0.15 which according to the release notes fixes 12 security vulnerabilities.

Here is a list of fixes in Firefox 2.0.0.15 from their website, some of them are critical so if you are running Firefox 2, you should update as soon as possible.

MFSA 2008-33 Crash and remote code execution in block reflow

MFSA 2008-32 Remote site run as local file via Windows URL shortcut

MFSA 2008-31 Peer-trusted certs can use alt names to spoof

MFSA 2008-30 File location URL in directory listings not escaped properly

MFSA 2008-29 Faulty .properties file results in uninitialized memory being used

MFSA 2008-28 Arbitrary socket connections with Java LiveConnect on Mac OS X

MFSA 2008-27 Arbitrary file upload via originalTarget and DOM Range

MFSA 2008-25 Arbitrary code execution in mozIJSSubScriptLoader.loadSubScript()

MFSA 2008-24 Chrome script loading from fastload file

MFSA 2008-23 Signed JAR tampering

MFSA 2008-22 XSS through JavaScript same-origin violation

MFSA 2008-21 Crashes with evidence of memory corruption (rv:1.8.1.15)

You can get the latest version of Firefox 2 here. If you are already Firefox 2 user, you can also click “Check for updates…” under “Help” menu.

Seamonkey was also updated to version 1.1.10 and included fixes for the same issues plus one additional critical vulnerability, so if you use it, it should also be updated.

Email, Bookmark or Share:
  • E-mail this story to a friend!
  • Digg
  • del.icio.us
  • StumbleUpon
  • Reddit
  • Technorati
  • Slashdot
  • Propeller
  • Google
  • Live
  • YahooMyWeb
  • TwitThis
  • Facebook
  • LinkedIn
More on CyberInsecure:
  • Firefox 2.0.0.13 Is Out
  • Two Critical Vulnerabilities Fixed By Mozilla In Firefox 3.0.8
  • Firefox Update Patch 9 Security Vulnberabilities, 4 Rated Critical
  • JavaScript Bug Patched By Mozilla In Firefox 2.0.0.14
  • Five Vulnerabilities Patched In Firefox 3.0.2 and 2.0.0.17, Two Of Them Are Critical

  • If you found this information useful, consider linking to it from your own website.
    Just copy and paste the code below into your website (Ctrl+C to copy)
    It will look like this: Mozilla Fixes 12 Security Vulnerabilities In Firefox 2.0.0.15

    Leave a Reply

    Comments with unsolicited links to other resources will be marked as spam. DO NOT leave links in comments. Please leave your real email, it wont be published.

    *
    To prove you're a person (not a spam script), type the security word shown in the picture. Click on the picture to hear an audio file of the word.
    Click to hear an audio file of the anti-spam word