Telstra has revealed the addition of almost one million new mobile services in the six months to December 2011, but Sensis revenues plummeted 24 percent in 12 months.
Like the JavaScript-related flaw disclosed earlier this week, the new stack buffer overflow vulnerability was disclosed by Simon Berry-Brown, this time in association with Andrew Haynes.
Firefox 3.5.1 was released ahead of schedule on July 16 to address the issue with the TraceMonkey just-in-time JavaScript engine. (It wasn't available when I checked this morning [Australian time], but it is now - download it from Mozilla's web site , or use your preferred updating method.)
The new problem is described as a "Unicode data remote stack buffer overflow vulnerability", and a proof of concept has been released.
A buffer overflows if an excessively long string of data is sent to the document.write method, leading to the possibility of arbitrary code execution or a crash.
It's not clear whether Firefox 3.5.1 also contains this vulnerability. The security software on my computers identifies the proof of concept as malware, and I'm not prepared to disable it just to find out.
David Bass
| For the fourth year in a row, IDC has placed content security provider Websense (NASDAQ: WBSN) at the top of the IDC Worldwide Web Security 2011 –…
How to Make Business Discovery Work for Your Business
Business Discovery takes its cues from consumer apps. Like Google, it encourages us- ers to hunt for and explore data without worrying about or even noticing the underly- ing technology. Their entire experience is working within an intuitive interface to get real-time, self-service results with only minimal training. ...more
Try an easy-to-use set of web-enabled
tools for business-class productivity services. Office 365 provides
anywhere-access to email, important documents, contacts, and calendars
on almost any device.