High Security Risk Vulnerability Found In Firefox 3.0
Just a few days after the release of Firefox 3.0 a Code execution vulnerability has been found in Firefox 3.0 that puts millions of Firefox3.0 users at risk of PC takeover attacks.
According to ZDI’s alert, it should be considered a high-severity risk:
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code, permitting the attacker to completely take over the vulnerable process, potentially allowing the machine running the process to be completely controlled by the attacker. TippingPoint researchers continue to see these types of “user-interaction required ” browser-based vulnerabilities – such as clicking on a link in email or inadvertently visiting a malicious web page.
The vulnerability affects not only Firefox 3.0 as well as prior versions of Firefox 2.0.x.
So until Mozilla’s security team ships a patch, just be a bit careful while browsing and while clicking links.
Via — ZDNet.com







