NameSilo

Firefox 3 Vulnerability Found

Spaceship Spaceship
Watch

Peter

VIP Member
Impact
209
A new vulnerability has been found within Firefox 3. The vulnerabilty it seems was known about prior to release however the person who found it decided not to post it until the browser was released. The vulnerability enables an attacker to take over a users pc and is considered a high severity bug.

Just hours after the official release of the latest refresh of Mozilla’s flagship browser, an unnamed researcher has sold a critical code execution vulnerability that puts millions of Firefox3.0 users at risk of PC takeover attacks.

http://blogs.zdnet.com/security/?p=1288
 
0
•••
The views expressed on this page by users and staff are their own, not those of NamePros.
.US domains.US domains
Wow.... thats bad!!!

And wonder how much he sold that for :O!!?
 
0
•••
Great 8.2 million pc are vulnerable... nice...
 
0
•••
Wonder if FF staff fixed this yet
 
0
•••
Thanks :D

Now, Im not going to upgrade until this is solved.
 
0
•••
DebacleX said:
Thanks :D

Now, Im not going to upgrade until this is solved.

:hehe: Good idea.
 
0
•••
Hopefully mozilla will roll out and patch quickly - within the next couple of days. They have been good in the past with things like this.
 
0
•••
Wow, already a vulnerablility. Hopefully Mozilla fixes it fast. Don't want my computer at risk.
 
0
•••
Why it's ALWAYS a bad idea to upgrade immediately.
 
0
•••
0
•••
labrocca said:
Why it's ALWAYS a bad idea to upgrade immediately.

FROM the article
According to a note from TippingPoint’s Zero Day Initiative (ZDI) , a company that buys exclusive rights to software vulnerability data, the Firefox 3.0 bug also affects earlier versions of Firefox 2.0x.

It also affects FF2.0.X
 
0
•••
wikes82 said:
Great 8.2 million pc are vulnerable... nice...
According to the article, it also affects previous versions (2.X).
That means its probably in the hundreds of millions.
For example all the computers at the highschool I just graduated from had Firefox installed, but my guess is they didn't all download 3.0 yesterday.

From www.spreadfirefox.com:
Firefox downloads:
579137807
That's over half a billion downloads.


Bruce
 
0
•••
Dang. It is a good thing I use Opera. ;)
 
0
•••
Going by the wording it looks like it was repaired in version 2 but resurfaced in version 3.
 
0
•••
Another reason why its a bad idea to upgrade after a major release. I guess I will have to go back to using Opera until this whole ordeal is sorted out, since I really don't want to risk having my computer being overtaken. :P
 
0
•••
"Technical details are being kept under wraps until Mozilla’s security team ships a patch." LOL so we don't even know what hit us.
 
0
•••
-Nick- said:
"Technical details are being kept under wraps until Mozilla’s security team ships a patch." LOL so we don't even know what hit us.

They rarely release details until it is fixed. Problem is though as it is an old bug that has resurfaced wouldnt be that difficult to look through bugtracker to find the same problem that occured in V2
 
0
•••
Good thing I use Internet Explorer!

Hah, kidding.
 
0
•••
ShShaun said:
Good thing I use Internet Explorer!

Hah, kidding.
What is this "Internet Explorer" I've never heard of it :D
 
0
•••
snowbird said:
Dang. It is a good thing I use Opera. ;)
is Opera good?
lol.. I wanna transfer to opera from FF 3.

omg.
why did I ever read that thread about the Firefox Download Day!!! lol.
 
0
•••
Appraise.net

We're social

Domain Recover
DomainEasy — Live Options
  • The sidebar remains visible by scrolling at a speed relative to the page’s height.
Back