AOA AOA AOA Folding For Team 45 AOA Files Home Front Page Become an AOA Subscriber! UserCP Calendar Memberlist FAQ Search Forum Home


Go Back   AOA > Software > Data Security
Register FAQ Members List Calendar Arcade Search Today's Posts Mark Forums Read

Data Security Viruses, Firewalls and Safe computing


Reply
 
LinkBack Thread Tools Rate Thread
  #1 (permalink)  
Old 20th June, 2008, 11:09 AM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 37,099

Mozilla Firefox 3.0 Vulnerability

Written by Daniel
Friday, 20 June 2008

Mozilla Firefox 3.0 Vulnerability
By Zero Day Initiative
Wed 18 Jun 2008 14:58pm
DVLabs

A number of people who monitor our Zero Day Initiative's Upcoming Advisories page noticed yesterday that we reported a vulnerability to Mozilla (ZDI-CAN-349).

[Frontpage...]
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 22nd June, 2008, 09:26 PM
cloasters's Avatar
Asst. BBS Administrator
 
Join Date: September 2001
Location: Location, Location
Posts: 14,543

There's no perfect software. I hope the fix for this is available soon.
__________________
When the world was better.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 23rd June, 2008, 09:04 AM
MUff1N's Avatar
Member
 
Join Date: October 2007
Location: Payson/AZ
Posts: 861

OK, so "What" is it and how do you avoid it?
Would help if they said what it was...
This is like saying my car is broken...
So with that said he's the info that's needed to avoid a problem before this is patched...

What we can confirm is that about five hours after the official release of Firefox 3.0 on June 17th, our Zero Day Initiative program received a critical vulnerability affecting Firefox 3.0 as well as prior versions of Firefox 2.0.x. We verified the vulnerability in our lab, acquired it from the researcher, then promptly reported the vulnerability to the Mozilla security team shortly after. Successful exploitation of the vulnerability could allow an attacker to execute arbitrary code. Not unlike most browser based vulnerabilities that we see these days, user interaction is required such as clicking on a link in email or visiting a malicious web page.

While Mozilla is working on a fix, we wont be divulging anything else until a patch is available, adhering to our vulnerability disclosure policy. Once the issue is patched, we'll be publishing an advisory here. Working with Mozilla on past security issues, we've found them to have a good track record and expect a reasonable turnaround on this issue as well.
__________________
Intel Core 2 Duo E6700 @ 3.30GHz / Zalman CNPS9700
Intel D975XBX2 Bad Axe 2 / FSB 1320
4GBs-2x Corsair XMS2 TWIN2X2048-6400C4 (4-4-4-12) @ 825Mhz
Seagate Barracuda SATAII 2 x 320GB
EVGA NVIDIA GeForce 8800 GTS 320mb/320bit (648/1512/2052) 82.2Gbs using EVGA Precision 1.3.3
PhysX Enabled: Geforce v178.24 drivers / 3DMark06 12162
Acer X222W HD 22" LCD 1000:1 / 5ms
Thermaltake ToughPower 750w / 85% efficiency / SLI-Crossfire ready
XP PRO SP3 / Vista Ultimate SP1 (Both tweaked)

Last edited by MUff1N : 23rd June, 2008 at 09:08 AM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Mozilla unleashes Firefox 3 Beta 4 Daniel ~ OS, Software, Firmware, and BIOS 0 11th March, 2008 11:14 AM
Mozilla scoffs at vulnerability study rating IE superior to Firefox Daniel ~ OS, Software, Firmware, and BIOS 0 3rd December, 2007 11:26 AM
Firefox vs Mozilla; why is FF more popular? videobruce OS, Software, Firmware, and BIOS 18 31st March, 2006 12:21 PM
Mozilla Firefox WonderBread Random Nonsense! 6 21st March, 2005 08:17 PM
Mozilla Firefox Virus WonderBread Random Nonsense! 6 20th February, 2005 02:05 PM


All times are GMT -6. The time now is 03:27 PM.


Copyright ©2001 - 2007, AOA Forums

Search Engine Friendly URLs by vBSEO 3.2.0