Technology news and Jobs
VIRTUALISATION
Critical bug - and more - fixed in Firefox 3.0.9
VIRTUALISATION
Critical bug - and more - fixed in Firefox 3.0.9 | Critical bug - and more - fixed in Firefox 3.0.9 |
|
| by Stephen Withers | |
| Thursday, 23 April 2009 | |
A new version of the popular Firefox browser fixes several security flaws and other bugs. This time, only one of the security issues is rated critical.Featured Whitepaper
5 Best Practices for Smartphone Support
Two of these problems have been shown to also affect the no longer supported Firefox 2, providing another reason to upgrade if you can. (Firefox's hardware requirements are modest, but if you're out of luck if you're still running Windows 98 or Mac OS X 10.3.) High-impact vulnerabilities involve a mishandling of Flash files that could result in cross-site attacks or privacy violations, and a JavaScript problem that could allow the execution of a script with incorrect privileges. Moderate vulnerabilities concern the mishandling of .jar files and a bug in the handling of Refresh headers. The low-impact vulnerabilities involve data leakage, code injection by malicious search plugins, cross-site scripting opportunities in third-party stylessheets, and URL spoofing with characters that should have been disallowed. Other changes include fixing bugs concerning cookie storage, the display of inline images in webmail, and the slow submission of large forms. Unspecified stability issues have also been addressed. Existing installations can be updated using Firefox's Check for Updates command, or the browser can be downloaded afresh from Mozilla's site. |
| < Next story in category | Previous story in the category > |
|---|





Tags




