sparkyminer
27th March 2005, 15:27
Just thought I'd post this as I know some of you use the Firefox browser.
Mozilla fixes flaw
The Mozilla Foundation issued a patch for a major security flaw in its Firefox browser and advised people to update their software, CNET reports.
The problem is caused by a buffer overflow in legacy Netscape code still included in the browser for animating GIF images. Similar memory problems have affected Mozilla's browsers and Microsoft's Internet Explorer in the past. A malicious attacker could exploit them by creating carefully crafted image files that, when viewed by a victim in a browser, execute a program and compromise the system.
The flaw was discovered by Internet Security Systems, a network protection company, and patched before the public learned of the issue.
The Mozilla Foundation released version 1.02 of Firefox on Wednesday to fix the problem and asked that all users download and apply the patch.
Mozilla fixes flaw
The Mozilla Foundation issued a patch for a major security flaw in its Firefox browser and advised people to update their software, CNET reports.
The problem is caused by a buffer overflow in legacy Netscape code still included in the browser for animating GIF images. Similar memory problems have affected Mozilla's browsers and Microsoft's Internet Explorer in the past. A malicious attacker could exploit them by creating carefully crafted image files that, when viewed by a victim in a browser, execute a program and compromise the system.
The flaw was discovered by Internet Security Systems, a network protection company, and patched before the public learned of the issue.
The Mozilla Foundation released version 1.02 of Firefox on Wednesday to fix the problem and asked that all users download and apply the patch.