Top

Firefox 2.0.0.10 Is Here

November 28, 2007

Firefox 2.0.0.10Firefox 2.0.0.10 is now released and fixes a total of 3 security vulnerabilities.

  • MFSA 2007-39 - Referer-spoofing via window.location race condition
  • Gregory Fleischer demonstrated that it was possible to generate a fake HTTP Referer header by exploiting a timing condition when setting the window.location property. This could be used to conduct a Cross-site Request Forgery (CSRF) attack against websites that rely only on the Referer header as protection against such attacks… Read more

  • MFSA 2007-38 - Memory corruption vulnerabilities (rv:1.8.1.10)
  • MFSA 2007-37 - jar: URI scheme XSS hazard
  • The jar: URI scheme was introduced as a mechanism to support digitally signed web pages, enabling web sites to load pages packaged in zip archives containing signatures in java-archive format.
    Jesse Ruderman and Petko D. Petkov point out this means that sites that allow users to upload binary content in zip format are effectively allowing users to install web pages on their site, and these can be used to perform Cross-Site Scripting (XSS) attacks… Read more

    Download Firefox 2.0.0.10.

    Don’t miss the news. Subscribe to our RSS Feed.

    Share and Enjoy (we know You want to): These icons link to social bookmarking sites where readers can share and discover new web pages.
    • del.icio.us
    • Netvouz
    • Furl
    • Ma.gnolia
    • NewsVine
    • StumbleUpon
    • YahooMyWeb
    • Slashdot
    • Technorati
    • Google
    • Live
    • Propeller
    • Reddit

    Be the first to know. Subscribe to our RSS Feed

    Comments

    2 Responses to “Firefox 2.0.0.10 Is Here”

    1. Netscape Navigator 9.0.0.4 Released » Web Browsers News and Reviews on November 28th, 2007 10:58 am

      […] Home Page « Firefox 2.0.0.10 Is Here […]

    2. Firefox 2.0.0.10 Portable Edition Released » Web Browsers News and Reviews on November 28th, 2007 11:07 am

      […] “Firefox 2.0.0.10 Is Here” topic for the […]

    Got something to say?





    Bottom