Wednesday, July 15, 2009

Mozilla Firefox 3.5 Vulnerability

US-Cert announce yesterday that FireFox 3.5 has a critical vulnerability that could allow a remote attacker to execute malicious code. Mozilla is currently working on a fix.

Below is from US-CERT

US-CERT is aware of reports of a vulnerability affecting Mozilla Firefox 3.5. This vulnerability is due to an error in the way JavaScript code is processed. Exploitation of this vulnerability may allow an attacker to execute arbitrary code. Additionally, exploit code is publicly available for this vulnerability.

US-CERT encourages users and administrators to disable JavaScript as outlined in theSecuring Your Web Browser document to help mitigate the risks associated with this vulnerability.

US-CERT will provide additional information as it becomes available.



No comments:

Post a Comment

Tomcat - removing server info

Below are the steps to remove Tomcat Server Information 1. Make sure Tomcat is not running 2. Navigate to "Tomcat Installation"...