Firefox
Researchers have already uncovered a 'critical' flaw in Firefox 3
R E L A T E D   C O N T E N T
ADVERTISEMENT

Bug hunters make short work of Firefox

First vulnerabilities surface for new browser

Shaun Nichols in San Francisco, vnunet.com 20 Jun 2008
ADVERTISEMENT

Security researchers have wasted no time in prodding Firefox 3 for possible security holes.

Just five hours after the browser made its public debut, the first remote code execution vulnerability was reported.

Security firm Tipping Point revealed on Wednesday that it received the report via its Zero Day Initiative service shortly after the browser was released.

Tipping Point has declined to release the name of the researcher who discovered the flaw, nor is it disclosing any further details on the vulnerability until a patch is prepared.

However, the flaw is categorised as a 'critical' vulnerability that could allow an attacker to remotely execute code on a user's computer.

Tipping Point said that it had sent the report to Mozilla and that developers were currently working on a fix for the flaw.

The security company plans to disclose further details on the nature of the vulnerability once a patch has been issued. No attacks targeting the vulnerability in the wild have been reported.

Security firms F-Secure and Secunia both recommend that users mitigate the risk by following best practices such as avoiding suspicious links and steering clear of untrusted sites.

'World record' event swamps Mozilla servers  18 Jun 2008
FirefoxExperts only, warns Mozilla  13 Feb 2008
FirefoxFive per cent off for not using IE  07 Jan 2008

All Bugs & Fixes
Tags: Firefox, Browser, Vulnerability, Security

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
| JAM Recruitment
Software Test Engineer 6 Weeks Contract £ 35 per hour Wiltshire We have an urgent need for a Software Test Engineer. Main Duties: ·Sound understanding of full software lifecycle ·Solid experience in requirements analysis ·Requirements ... more >
| JAM Recruitment
Software Test Engineer 3 Months Contract £35 per hour Wiltshire We have an urgent need for a Software Test Engineer. Main Duties: ·Sound understanding of full software lifecycle ·Solid experience in requirements analysis ·Requirements based ... more >
| Aston Carter
Major Investment Bank requires a Business Analyst to work within reference data IT. The reference data IT function is responsible for the three internal systems. One of the systems is a strategic repository for Client ... more >
| JAM Recruitment
Job Ref: CY - 27021979 Package: £25 – 42,000 +Bens Location: YORKSHIRE Job type: Occupational Health Position type: Permanent Hours: Full time Contact name: Mr Colin Youle Contact Company: JAM HUMAN RESOURCES Are you a ... more >
More job opportunities