Mozilla patches critical security flaws

By

Firefox, SeaMonkey and Thunderbird affected.

The Mozilla Foundation has released new versions of the Firefox web browser and other software to address several remotely exploitable vulnerabilities.

Mozilla patches critical security flaws

A total of nine vulnerabilities have been patched in Firefox 35, Mozilla said in its security advisory for January 2015. 

Of these, four are categorised as critical, which Mozilla said means they can be used to run attacker code and install software, without user interaction beyond normal web browsing - a so-called drive-by attack.

Users and administrators are encouraged to update to the latest version 35 of Firefox and 31.4 of Firefox Extended Support Release. The United States government Computer Emergency Readiness Team (CERT) warned that exploitation of the vulnerabilities could allow remote attackers to take control of affected systems.

The SeaMonkey all-in-one internet application suite and Thunderbird email, messaging and calendaring program, both of which use Firefox code, have also been patched by Mozilla.

While Google Chrome has overtaken Firefox in the popularity stakes in recent years, the open source web browser still holds around 12 percent of the worldwide market, according to analyst firm NetMarketShare.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:

Most Read Articles

Woolworths' CSO is Optus-bound

Woolworths' CSO is Optus-bound

Australia's super funds told to assess authentication controls

Australia's super funds told to assess authentication controls

Hackers abuse modified Salesforce app to steal data, extort companies

Hackers abuse modified Salesforce app to steal data, extort companies

The Northern Beaches Women's Shelter hones focus on tech-enabled abuse

The Northern Beaches Women's Shelter hones focus on tech-enabled abuse

Log In

  |  Forgot your password?