Radware reveals critical vulnerability in Firefox 3.0.1


Recommended Posts

http://www.radware.com/newsevents/pressrelease.aspx?id=6459

Radware Reveals Critical Vulnerability in Firefox 3, Mozilla’s Latest Web Browser Application

MAHWAH, N.J., July 30, 2008

Radware, the leading provider of integrated application delivery solutions for business-smart networking, today announced it has found a vulnerability that may cause application Denial of Service (DoS) in Firefox 3, Mozilla?s latest Web browser application.

Radware?s team of researchers found that in order to exploit the vulnerability which crashes the Firefox application, a Firefox 3 user must open or surf into an HTML page crafted with a simple set of legitimate HTML tags. This can be achieved either by social engineering or can be injected into a comprised site.

Radware also determined the vulnerability affects Firefox version 3.0, as well as minor update versions (i.e. 3.0.1) version released. For more information regarding Radware?s security solutions please visit: www.radware.com.

The likelihood of you running into any vulnerabilities these security sites usually report is extremely remote, especially if you stick to sites you know and trust. All software has flaws, but at least we can count on Mozilla to release timely updates. Oh, and their updates never require a full OS reboot, like many IE ones :p

The likelihood of you running into any vulnerabilities these security sites usually report is extremely remote, especially if you stick to sites you know and trust. All software has flaws, but at least we can count on Mozilla to release timely updates. Oh, and their updates never require a full OS reboot, like many IE ones :p

Yea, because that five minutes it takes to reboot (at least on my machine) are so valuable. :rolleyes:

A vulnerability is a vulnerability, and thus needs to be fixed.

Yea, because that five minutes it takes to reboot (at least on my machine) are so valuable. :rolleyes:

If you are just browsing the web at home then probably not, but rebooting your computer at work when you have 3 or 4 virtual machines running certainly sucks.

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.