Five hours after Mozilla officially released Firefox 3.0, researchers found a vulnerability in the new browser.
TippingPoint, a provider of network-based intrusion prevention systems, was informed about existing security issues in Mozilla Firefox 3.0 through its program Zero Day Initiative (ZDI) that rewards security researchers for exclusive information disclosing vulnerabilities founded in software products.
Even the new security features of Firefox 3.0 have the main priority to maintain personal information safe and to protect users from phishing and malware, TippingPoint confirms the existence of a critical vulnerability of high severity that affects Mozilla Firefox 3.0 (ZDI ID: ZDI-CAN-349) and prior versions of Firefox 2.0.x: “We verified the vulnerability in our lab, acquired it from the researcher, then promptly reported the vulnerability to the Mozilla security team shortly after. Successful exploitation of the vulnerability could allow an attacker to execute arbitrary code. Not unlike most browser based vulnerabilities that we see these days, user interaction is required such as clicking on a link in email or visiting a malicious web page.”
In response to this security report, Mozilla Security Blog posted, “This issue is currently under investigation. To protect our users, the details of the issue will remain closed until a patch is made available. There is no public exploit, the details are private, and so the current risk to users”.
If other security reports are taken into account, like the one set up on SecurityFocus website which deals with an unspecified buffer overflow vulnerability (boundary condition error), the new security improvements from Firefox 3.0 are not powerful enough for present pishing and malware threats. In conclusion, have in mind that over 14 millions downloads of Mozilla Firefox 3.0 have been performed, users’ computers are in potential danger until the security patches are released to fix the existing vulnerabilities.
The issue affects users of Firefox 3.0 as well as Firefox 2.0.
Leave a Reply
-
Related Articles From This Category
Starcraft II closed beta, not closed any longer.
Posted On Thursday, March 11th 2010Known some time and the proper motivation members of the Internet community can apparently do ...
2011 will see major hard drive modify in decades.
Posted On Thursday, March 11th 2010There hasn’t been an enormous deal of news concerning it so far but soon our ...
E-book war returns power to music labels.
Posted On Wednesday, March 10th 2010One time, the music labels were the kings of happy. They were able to get ...
Currently Windows Mobile 7 makes a clean break
Posted On Wednesday, March 10th 2010Microsoft is manufacture a clean break with their new Windows 7 operating system for mobile ...
Its Amazing, Britain wants to mandate microchips for man’s best friend.
Posted On Wednesday, March 10th 2010Not content with wiring garbage bins to monitor how much waste British families produce, now ...
-
Categories
- News (1353)
- Microsoft (137)
- iPhone (26)
- Gadgets (82)
- Software/OS (103)
- Google (2)
- Accessories (277)
- Mobile Phones (47)
- Computer (37)
- Games (16)
- TECHNOLOGY (178)
- Laptops (1)
- Apple (1)
-
Calendar
December 2009 M T W T F S S « Nov Feb » 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 -
Pages
-
Archives
- March 2010 (19)
- February 2010 (6)
- December 2009 (1325)
- November 2009 (6)
-
Recent Comments
-
Recent Comments
-
Paulette Says: And thsi is the reason I love technologynewsportal...
-
hilkBloni Says: favorites iputy [url=http://demachigoog.blogspo...
-
hilkBloni Says: mostly viewed pkjfp [url=http://pael-warm-campi...
-
eBook Reviews Says: Wow! This is probably the most interesting info I ...
-
-
-
Hot Topics
- Technology failing disabled net surfers: forum
70 comments received - Sennheiser’s HD 201 Headphones
10 comments received - Slow Web site? Yahoo open-sources an app for that
6 comments received - 64GB iPhone and 128GB iPod Touch to hit early next year
6 comments received - Random Sling Up Trouble
5 comments received
- Technology failing disabled net surfers: forum
-
-
Blogroll
-
Meta















