Mozilla Patches Buffer Overflow Bug For Firefox 1.5 Beta 1
Soon after the release of Firefox 1.5 Beta 1 by Mozilla Corp. an exploitation of critical buffer overflow vulnerability in the Firefox browser was found by the Internet security researcher Tom Ferris which was patched today by Mozilla Corp.
Through the buffer overflow vulnerability a malicious website could inject the HTML proof-of-concept code made public to crash Firefox thus giving the attacker the advantage to and grab control of the computer.
Till the firefox browser is repaired completely, users who visit international websites are advised to visit trusted websites only.
Although no code which exploits the vulnerability, has so far been spotted. Mozilla claims that all versions of Mozilla Suite and Mozilla Firefox are affected, including the recently released v 1.5 Beta 1 aka the Deer Park Alpha 2, the next generation Firefox browser being made available for testing purposes only.
Del.icio.us
Cosmos
Digg
September 14th, 2005 at 5:55 pm
something tells me beta 2 is going to come out any day now seeing the present fix is just temp solution.