iEntry 10th Anniversary RSS Newsletter Advertising
Join the WebProWorld Forum!

Firefox Receives Another Security Update

Post to Twitter Post to Facebook

Mozilla has patched a Firefox vulnerability, discovered by the Internet Security Systems group. The concern has to do with the method in which Mozilla's browser resolves .gif images.

According to ISS, the security flaw was discovered in the, "GIF image processing library used in software developed by the Mozilla Foundation. This library is used by the Firefox web browser, the Mozilla browser, and Mozilla's Thunderbird Mail client. By crafting a GIF file in a malicious manner, an attacker is able to trigger a heap overflow within the application viewing the image, leading to arbitrary code execution and remote compromise."

No known attacks taking advantage of the security flaw have been reported.

The findings for the hole were published by ISS yesterday and in true Mozilla fashion, a patch and a press release were issued before the day was out.

Chris Hoffman, director of engineering for the Mozilla Foundation, says, "The Mozilla Foundation is deeply committed to providing its users with the safest Internet experience possible. To deliver our users the experience they deserve, we must stay ahead of the curve in patching potential vulnerabilities. For example, the bug patched in this update has no known real world exploits, and we were able to provide a quick response."

An updated version of Mozilla's popular browser is available at GetFirefox.com.

=======================================

Fanatical Support and Instant Emergency

Response on our Zero-Downtime Network

Get more info on our managed hosting solutions on Linux or Microsoft operating systems

Check our offers

=======================================

Chris Richardson is a search engine writer and editor for WebProNews. Visit WebProNews for the latest search news.

About the author:
Chris Richardson is a search engine writer and editor for WebProNews. Visit WebProNews for the latest search news.

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.
CAPTCHA
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
1 + 4 =
Solve this simple math problem and enter the result. E.g. for 1+3, enter 4.
Featured Headline
Fake Chrome OS Screenshots Punk Tech Media
Mystery Blogger Comes Clean
3 comments | 13 hours ago
 
Couldn't connect to the database: Too many connections
Subscribe to WebProNews


Send me relevant info