First Warning To Firefox

Tuesday 10 May 2005 @ 2:50 pm

Recently, two dangerous unpatched Javascript flaws have been found. Furthermore, the unpatched extremely critical security holes and exploit code has already been circulating on the Internet, according to sources.

The exploit, discovered by Paul of Greyhats Security Group and Michael “mikx” Krax, makes use of two separate vulnerabilities. An attacker could create a malicious page using frames and a JavaScript history flaw to make software installations appear to be coming from a “trusted” site. By default, Firefox allows software installations from update.mozilla.org and addons.mozilla.org, but users can add their own sites to this whitelist.

Mozilla Foundation confirmed that users may be vulnerable if they have added other sites to the whitelist. In other words, if you did not add in any site into the software installation whitelist, you are safe from this issue.

Anyway, firefox user can save yourself while waiting for the patch to be released by Mozilla Foundation, by switching off JavaScript in the meantime.

The following are steps to swich off JavaScript:-

1. Go to Tools, then click Options….
2. Select Web Features on the left panel.
3. Deselect the Enable JavaScript box.

[Source]


Blogsphere: TechnoratiFeedsterBloglines
Bookmark: Del.icio.usSpurlFurlSimpyBlinkDigg
RSS feed for comments on this post








4 Responses to 'First Warning To Firefox'

  1. CLF - May 11th, 2005 at 7:35 am

    Darn it!! My FireFox is having this prob right now. Norton detected Trojan alert. WTF!!
    Hopefully new FireFox update will release ASAP!!

  2. CLF - May 11th, 2005 at 3:35 pm

    Darn it!! My FireFox is having this prob right now. Norton detected Trojan alert. WTF!!
    Hopefully new FireFox update will release ASAP!!

  3. SapiensBryan - May 11th, 2005 at 7:50 am

    Opss… Sorry to hear that. :p

    As long as, you did not add in any other site other than the two Mozzila Original sites, you are not at risk for the JavaScript flaws.

    Hope a patch is coming out really soon. :)

  4. SapiensBryan - May 11th, 2005 at 3:50 pm

    Opss… Sorry to hear that. :p

    As long as, you did not add in any other site other than the two Mozzila Original sites, you are not at risk for the JavaScript flaws.

    Hope a patch is coming out really soon. :)

Powered by Disqus

Apple iPad & Maxis WiFi Modem Reviews «
Apple iPad & Maxis WiFi Modem Reviews
Nokia N8 Reviews «
Nokia N8 Reviews
Samsung Galaxy S Reviews «
Samsung Galaxy S Reviews
Nokia N900 Reviews «
Nokia N900 Reviews
Nokia N97 Reviews «
Nokia N97 Reviews



.................................

Live Stats

Recent Posts

Favorite Icon



My QR Code A List Blogger