First Warning To Firefox

This post has been viewed 2954 times since Tuesday 10 May 2005 @ 2:50 pm

Recently, two dangerous unpatched Javascript flaws have been found. Furthermore, the unpatched extremely critical security holes and exploit code has already been circulating on the Internet, according to sources.

The exploit, discovered by Paul of Greyhats Security Group and Michael “mikx” Krax, makes use of two separate vulnerabilities. An attacker could create a malicious page using frames and a JavaScript history flaw to make software installations appear to be coming from a “trusted” site. By default, Firefox allows software installations from update.mozilla.org and addons.mozilla.org, but users can add their own sites to this whitelist.

Mozilla Foundation confirmed that users may be vulnerable if they have added other sites to the whitelist. In other words, if you did not add in any site into the software installation whitelist, you are safe from this issue.

Anyway, firefox user can save yourself while waiting for the patch to be released by Mozilla Foundation, by switching off JavaScript in the meantime.

The following are steps to swich off JavaScript:-

1. Go to Tools, then click Options….
2. Select Web Features on the left panel.
3. Deselect the Enable JavaScript box.

[Source]


Blogsphere: TechnoratiFeedsterBloglines
Bookmark: Del.icio.usSpurlFurlSimpyBlinkDigg
RSS feed for comments on this post










2 Responses to “First Warning To Firefox”

  1. 1
    CLF Says:

    Darn it!! My FireFox is having this prob right now. Norton detected Trojan alert. WTF!!
    Hopefully new FireFox update will release ASAP!!

  2. 2
    SapiensBryan Says:

    Opss… Sorry to hear that. :p

    As long as, you did not add in any other site other than the two Mozzila Original sites, you are not at risk for the JavaScript flaws.

    Hope a patch is coming out really soon. :)




Sign up now!
Earn $25 instantly!

Now!Now!
Earn $$ with WidgetBucks!

.................................

Favorite Icon



A List Blogger