Mozilla Releases Firefox 3.5.4 Patch to Fix 16 Vulnerabilities
Posted 10/28/09 at 02:35:12 PM by Bart Salisbury
Clearly there is nothing that hackers won’t go after in the attempt to monkey about with your computer’s innards. Any opening, no matter how insignificant, needs to be closed before it can be exploited. With this in mind Mozilla today released an update to Firefox, upping its version to 3.5.4, that patches 16 weaknesses, eleven of which are critical.
Hackers were busy on the obvious: the browser engine, JavaScript, and open-source media libraries; as well as the less obvious: the GIF color map parser and the string-to-number converter. In its security advisory, Mozilla reports: “Some of these crashes showed evidence of memory corruption under certain circumstances and we presume that with enough effort at least some of these could be exploited to run arbitrary code.”
Mozilla notes that the JavaScript vulnerabilities can cause browser crashes. Those not able or unwilling to upgrade are recommended to turn JavaScript off.
If you’re still hanging out in Firefox 3 you’ve also got a security patch waiting for you. Version 3.0.15 was released, addressing nine problems, four of which Mozilla tagged as critical.
Image Credit: Mozilla
Feature
Review
Feature
Feature
Feature






