Home | Firefox, News, Security | Firefox vulnerability severity raised, fix on its way
-->

Firefox vulnerability severity raised, fix on its way

Published: January 29th, 2008
  •  Print

After further investigation, the severity of the chrome protocol directory traversal vulnerability disclosed last week has been raised from low to high by Mozilla Security.

The flaw, that affects some 600+ add-ons that are distributed as expanded files and folders instead of packed in a .jar file, could allow a malicious site to get access to user files in known locations.

A fix has already been issued and will be pushed to users with the next Firefox update, 2.0.0.12, due for late next week. In the meantime, I suggest disabling at least your less frequently used extensions and switch back to the default theme until the update is available.

You can leave a response, or trackback from your own site.

0 Comments on “Firefox vulnerability severity raised, fix on its way”

Subscribe to this post's RSS feed

2 Trackbacks/Pings (Trackback URL)

  1. 1. La vulnerabilidad de Firefox del protocolo chrome… afecta a más de 600 complementos : January 30th, 2008 at 6:51 am
  2. 2. Firefox 2.0.0.12 fixes a handful of security bugs : Mozilla Links February 8th, 2008 at 12:06 am

Leave a Reply




Comment:

Firefox 3

Links

Recent Entries

Recent Comments