• Home
  • Archives
  • Contact Us

Mozilla fixes Vulnerabilities, But A New One Found In Internet Explorer »

tag Categories :  Bugs, FireFox, Internet Explorer, Updates
time Posted on Wednesday, July 2, 2008 by Venkat | * Comments(0)

Mozilla has released FireFox 2.0.0.15 which fixes 5 critical ,4 High ,2 Moderate and 1 Low vulnerabilities.

Here’s list of what’s been fixed in this update.firefox-2.0.0.15

MFSA 2008-33 Crash and remote code execution in block reflow
MFSA 2008-32 Remote site run as local file via Windows URL shortcut
MFSA 2008-31 Peer-trusted certs can use alt names to spoof
MFSA 2008-30 File location URL in directory listings not escaped properly
MFSA 2008-29 Faulty .properties file results in uninitialized memory being used
MFSA 2008-28 Arbitrary socket connections with Java LiveConnect on Mac OS X
MFSA 2008-27 Arbitrary file upload via originalTarget and DOM Range
MFSA 2008-25 Arbitrary code execution in mozIJSSubScriptLoader.loadSubScript()
MFSA 2008-24 Chrome script loading from fastload file
MFSA 2008-23 Signed JAR tampering
MFSA 2008-22 XSS through JavaScript same-origin violation
MFSA 2008-21 Crashes with evidence of memory corruption (rv:1.8.1.15)

internet-explorer There’s been a new flaw found in Internet Explorer that focuses on IE’s inline frames, and affects Microsoft’s Internet Explorer 6, 7, and 8 beta 1, the security flaw could subject users who visit a malicious Web site or open a malicious e-mail message to arbitrary code.

“iframes,” or inline frames, often are used for serving ads, which typically come from a different domain than content that appears on the same Web page.

U.S. CERT describes it as,

“Microsoft Internet Explorer fails to properly restrict access to a document’s frames, which may allow an attacker to modify the contents of frames in a different domain.”

Source — Secunia

If you're new here, you may want to subscribe to my RSS feed. Thanks for visiting!

TEST
tag Digg This! tag Stumble it! tag Add to Del.icio.us tag Netscape it! tag Google Bookmark It!


Add this blog to my Technorati Favorites!

Enter your email address:

Delivered by FeedBurner

  • RSS Guide To A Carrer Abroad

    • TOEFL : What & Who Needs To Give This Exam
    • GUIDE : How To Book Your GRE Slot
    • What Is GRE and TOEFL ?? Who Needs To Give These Exams
    • Visa Experiences
    • What To Expect On Your Way To USA ?
    • Visa Experience Fall 2008 May 20th
    • Visa Expericence May 22, 2008 Mumbai
    • Fall 2008 : Visa Experiences
    • What Are Emergency Slots ?? Availability and Who Qualifies For Them
    • Steps To Schedule A F1 Visa Interview
  • TECH YARD Copyright © 2008 | Disclaimer & Privacy Policy | Slick Blue Theme by Kyle Eslick