Firefox security hole reported
Posted on 12 Sep 2005 at 10:31
Firefox users have been alerted to a potential security flaw in the open source browser. The news will come as an embarrassment to the developers who have just released a beta of version 1.5 which is intended to address a number of security issues.
According to security researcher Tom Ferris a buffer overflow vulnerability exists within the current Firefox version 1.0.6, all previous versions and the beta of 1.5. Ferris says a strikingly simple piece of HTML can allow an attacker to remotely execute arbitrary code on an affected host.
Ferris says he has notified the team at Mozilla about the problem and awaits their response. The Mozilla team says they are currently investigating the reported vulnerability. However, Ferris's claims cannot be easily dismissed as he has a track record of discovering new bugs in Windows software.
Although initially billed as a more secure browser than Internet Explorer, Firefox has had its own share of security problems in the past few months. However, the Mozilla team is pressing ahead with the new versions ahead of the next release of Internet Explorer expected before the end of the year.
A roadmap for the development of Firefox is available at the Mozilla web site.
Author: Steve Malone
advertisement
- ATI Radeon HD 5970: 42% more expensive in the UK
- Office 2010 Beta – 32-bit or 64-bit – The Choice is Clear
- Why Britain's watchdogs have fewer teeth than goldfish
- Tabbed documents: how to make Office 2010 great
- Outlook 2010 People Pane – does it spell death to Xobni
- Microsoft Outlook 2010 screenshots
- Co-Authoring in Word 2010 and SharePoint Foundation 2010
- Microsoft Outlook 2010 screenshots: Backstage view
- Flash 10.1: Developing for Desktop and Device
- Microsoft Office 2010 screenshots: Recover unsaved items
- Avira Premium Security Suite 9
- ZoneAlarm Internet Security Suite
- Webroot Internet Security Essentials
- Trend Micro Internet Security
- PC Tools Internet Security 2009
- Panda Internet Security 2009
- Norton Internet Security 2009
- Kaspersky Internet Security 2009
- F-Secure Internet Security 2009
- Eset Smart Security
- BitDefender Total Security 2009
advertisement
Printed from www.pcpro.co.uk

