Firefox fixes holes with new release

By

Mozilla's Firefox 3.0.2, released late Tuesday, corrects 12 vulnerabilities, seven that are deemed "critical."

Firefox fixes holes with new release
Mozilla late Tuesday pushed out a security update to its Firefox browser to repair seven flaws deemed "critical," meaning they could be exploited to launch attack code to install malicious software on victims' machines.

In total, Firefox version 3.0.2 corrects 12 vulnerabilities.

The critical bugs involve a memory corruption issue in the browser engine, according to a Firefox advisory, and a privilege escalation problem in XPCNativeWrappers, according to a second advisory.

The latest version also rectifies four vulnerabilities rated "moderate" risk and one rated "low" risk.

The new updates also are covered in Firefox 2.0.0.17. Mozilla has said it will end support for Firefox 2 in December.

Tuesday's fixes are also part of email client Thunderbird 2.0.0.17 and internet suite SeaMonkey 1.1.12.

See original article on scmagazineus.com
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

First npm worm "Shai-Hulud" released in supply chain attack

First npm worm "Shai-Hulud" released in supply chain attack

Log In

  |  Forgot your password?