Wiz Feinberg
From: Mid-Michigan, USA
|
Posted 26 Mar 2009 2:03 pm
|
|
Mozilla has just released a patch to fix a newly revealed vulnerability in Firefox browsers 3.07 and earlier. The patched version will be 3.0.8 and was pushed out on Saturday, March 28, 2009. A Proof Of Concept exploit has been published and hackers are already aware of it.
If you have not modified the default options for updates, you should receive the new browser automatically. Otherwise, visit the Firefox home page starting Monday evening to see if version 3.0.8 is listed as the current download. When it becomes available, download and install it over your existing installation.
The bug affects Firefox on all operating systems, including Mac OS and Linux, according to Mozilla developer notes on the issue.
Quote: |
By tricking a victim into viewing a maliciously coded XML file, an attacker could use this bug to install unauthorized software on a victim's system. This kind of Web-based malware, called a drive-by download, has become increasingly popular in recent years. |
More information. _________________ "Wiz" Feinberg, Moderator SGF Computers Forum
Security Consultant
Twitter: @Wizcrafts
Main web pages: Wiztunes Steel Guitar website | Wiz's Security Blog | My Webmaster Services | Wiz's Security Blog |
|