Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Exploit code chases two Firefox flaws (May 9, 2005)
ZDnet ^ | May 9, 2005 | Dawn Kawamotot

Posted on 12/12/2005 8:14:49 PM PST by CometBaby

If you use the Firefox browser .. read this !! .. Two vulnerabilities in the popular Firefox browser have been rated "extremely critical" because exploit code is now available to take advantage of them. The cross-site scripting and remote system access flaws were discovered in Firefox version 1.0.3, but other versions may also be affected, said security company Secunia, which issued the ratings Sunday.

(Excerpt) Read more at news.zdnet.com ...


TOPICS:
KEYWORDS: exploit; firefox
Navigation: use the links below to view more comments.
first previous 1-2021-4041-45 next last
To: CometBaby

The history title issue is in no way related to the very old iframe and InstallTrigger bugs. They are two entirely different things. An article from MAY 2005 is in fact ancient news in DECEMBER 2005.

Hello folks, let's read the article we're discussing, please.


21 posted on 12/12/2005 8:34:17 PM PST by Sols
[ Post Reply | Private Reply | To 19 | View Replies]

To: CometBaby
Ummm.... The article you posted is from May. That's like seven months ago. In case you missed it, Mozilla fixed this almost immediately. (As opposed to myriads of IE flaws that MS knows about but takes years to fix...)

Maybe some attention to date would be in order, since this certainly is not 'breaking' news!

22 posted on 12/12/2005 8:36:31 PM PST by NoCmpromiz (John 14:6 is a non-pluaralistic statement.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: softwarecreator
The most important thing that Firefox did was break Microsoft's monopoly on the browser. Now IE has popup blocking and the next version they will have tabs. Other features will follow. This is a good thing. While I have no problem with a natural monopoly, I believe that Microsoft abused their monopoly with the browser wars. Now that the browser wars have started again the quality of web browsers has skyrocketed. Microsoft is even faster on fixing security problems.

I use Firefox because I can't live without tabs and a reasonable popup blocker. If Microsoft makes a better browser I may switch (though they are probably about a year and a half behind right now).
23 posted on 12/12/2005 8:39:16 PM PST by burzum (Great minds discuss ideas, average minds discuss events, small minds discuss people.-Adm H Rickover)
[ Post Reply | Private Reply | To 9 | View Replies]

To: CometBaby

Because Firefox has no auto-update function, there are lots of people still using older versions. This security problem will be real if the Microsoft hating virus writers divert their hate for a few seconds.

Of course, that will not happen.


24 posted on 12/12/2005 8:43:04 PM PST by Poser (Willing to fight for oil)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Admin Moderator

You might want to consider moving this from 'latest news' since it is from May, and is no longer an issue...


25 posted on 12/12/2005 8:43:25 PM PST by NoCmpromiz (John 14:6 is a non-pluaralistic statement.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Sols
You may be right about that .. I don't recall anything from May. I only know that this is some form of exploit because I was *punked*. I am no techie .. but I am not exactly a newbie as my client is on the net 24/7.

Today I had problems with the slow bootup, and my computer was hanging (I have a P4 with 1 gig of memory)so there is no reason it should.

To make a long story short, I went in and cleared my history cache, set my saved days to zero .. problem gone.

26 posted on 12/12/2005 8:43:46 PM PST by CometBaby (You can twist perceptions .. reality won't budge!)
[ Post Reply | Private Reply | To 21 | View Replies]

To: CometBaby
I'm running Firefox 1.5 as well .. you have to go in and clean our your History cache and set it to store for zero days. What I am hearing, is that it is presently affecting all versions .. even this newest one. They are working hard on a patch.

Will do. Thanks :)

27 posted on 12/12/2005 8:47:49 PM PST by demlosers
[ Post Reply | Private Reply | To 17 | View Replies]

To: softwarecreator

Maybe you should warn secunia about hyping problems with a very old version of firefox.


28 posted on 12/12/2005 8:51:30 PM PST by flashbunny (To err is human. But to really screw something up, have the government try to fix it.)
[ Post Reply | Private Reply | To 9 | View Replies]

To: Poser
In the News/Activism forum, on a thread titled Exploit code chases two Firefox flaws, Poser wrote:

Because Firefox has no auto-update function, there are lots of people still using older versions. This security problem will be real if the Microsoft hating virus writers divert their hate for a few seconds.

Of course, that will not happen.

FireFox DOES auto-update ... if/when a little red circle with an up-arrow appears on the right-hand end the menu bar, just give it a single click. Couldn't be easier ...

29 posted on 12/12/2005 8:54:07 PM PST by cooldog (Islam is a criminal conspiracy to commit mass murder ... deal with it!)
[ Post Reply | Private Reply | To 24 | View Replies]

To: CometBaby

I'll just switch back to my Firebird 0.7 version. That should be safe.


30 posted on 12/12/2005 8:54:15 PM PST by PAR35
[ Post Reply | Private Reply | To 1 | View Replies]

To: CometBaby
The link

<a href-"http://www.mozilla.org/security/history-title.html>(text goes here)</a>

31 posted on 12/12/2005 9:00:03 PM PST by spunkets
[ Post Reply | Private Reply | To 17 | View Replies]

To: CometBaby

Version 1 Firefox browser is already on 1.07


32 posted on 12/12/2005 9:05:47 PM PST by thoughtomator (What'ya mean you formatted the cat!?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: demlosers

I'm at 1.0.7


33 posted on 12/12/2005 9:06:24 PM PST by b4its2late (The only substitute for good manners is faster reflexes.)
[ Post Reply | Private Reply | To 2 | View Replies]

Comment #34 Removed by Moderator

To: cooldog
"FireFox DOES auto-update ... if/when a little red circle with an up-arrow appears on the right-hand end the menu bar, just give it a single click. Couldn't be easier"


You are describing something I have never seen. Are you running Linux?
35 posted on 12/13/2005 6:51:02 AM PST by Poser (Willing to fight for oil)
[ Post Reply | Private Reply | To 29 | View Replies]

To: flashbunny
Maybe you should warn secunia about hyping problems with a very old version of firefox

HAHAHA.  Your'e probably right, but a lot of people are already making that suggestion!

36 posted on 12/13/2005 3:25:35 PM PST by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 28 | View Replies]

To: Sols

Any website that can kill firefox is Firefox's problem.


37 posted on 12/13/2005 4:49:34 PM PST by dr_who_2
[ Post Reply | Private Reply | To 11 | View Replies]

To: Poser
I run Firefox on both WinXP and Linux. Let me see if I can find some info for you ....

Here you go: Firefox update info

38 posted on 12/14/2005 8:25:06 AM PST by cooldog (Islam is a criminal conspiracy to commit mass murder ... deal with it!)
[ Post Reply | Private Reply | To 35 | View Replies]

To: Poser
You are describing something I have never seen. Are you running Linux?

I am on XP and i tnotifies me of an available update as well.

39 posted on 12/14/2005 8:29:03 AM PST by smith288 (Peace at all cost makes for tyranny free of charge...)
[ Post Reply | Private Reply | To 35 | View Replies]

To: smith288

Thanks.

It was so small I never noticed it before.


40 posted on 12/14/2005 10:31:10 AM PST by Poser (Willing to fight for oil)
[ Post Reply | Private Reply | To 39 | View Replies]


Navigation: use the links below to view more comments.
first previous 1-2021-4041-45 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson