The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Mozilla flaws could allow attacks, data access
Time: 15:27 EST/20:27 GMT | News Source: News.com | Posted By: Jonathan Tigner

Multiple vulnerabilities that could allow an attacker to install malicious code or steal personal data have been discovered in the Mozilla Suite and the Firefox open-source browser.

Details of the nine flaws were published on Mozilla's security Web site over the weekend.

Ian Latter, senior security consultant at Internet security specialist Pure Hacking, said most of the vulnerabilities are based on the way the applications handle JavaScript.

"There are some permission issues related to running JavaScript at an escalated privilege level. They remove some of the security measures used to keep JavaScript sandboxed and allow it to potentially do malicious things to your computer," Latter said.

Write Comment
Return to News

  Displaying 1 through 25 of 313
Last | Next
  The time now is 9:17:09 AM ET.
Any comment problems? E-mail us
#1 By 10896 (64.140.196.109) at 4/18/2005 4:37:54 PM
9 more for Firebox and the total since 1.0 is now 41. Anybody know the record for major security deficiencies in one year? Looks like Firefox is going to runaway with that record, if they keep up the current pace they will have well over a 100 in one year. Let's not even count all the bugs that have been fixed. Where are all those open source eyes that fix bugs and security deficiencies before the product is released. The whole Firefox program has been a joke.

#2 By 13030 (198.22.121.120) at 4/18/2005 5:29:53 PM
And more pathetic is how billions of dollars, a desktop monopoly, years of undisputed browser dominance, and some of the smartest poeple in the business still can't secure IE and it's shared component dependency mess. To paraphrase #1, where are all those salaried eyes that fix bugs and security deficiencies before the product is released. I use Firefox, but I own MS stock and I'm pissed.

According to secunia.com (http://secunia.com/product/4227/ and http://secunia.com/product/11/), Firefox has had 15 so far for 2004 and 2005. IE 6.x has had 40 for 2004 and 2005. The first for FF is from early August 2004, but let's just say we have only six months. At the current rate FF will have 30 in a year; while IE's record is 34. Futhermore, for all vulnerabilities found for 2003 - 2005, only 13% of FF vulnerabilities have been rated high or extreme. IE blows that apart with an astounding 42%!

#3 By 10896 (24.25.182.11) at 4/18/2005 6:25:01 PM
I dont know about Secunia, but the Mozill foundation lists 41 since the 1.0 version of Firefox.
ch go here to see: http://www.mozilla.org/projects/security/known-vulnerabilities.html

#4 By 10896 (24.25.182.11) at 4/18/2005 6:29:09 PM
Mozilla also has a policy of hiding security bugs frrom organizations such as Secunia.
see:
mozilla.org has adopted the following general policies for handling bug reports related to security vulnerabilities:

* Security bug reports can be treated as special and handled differently than "normal" bugs. In particular, the mozilla.org Bugzilla system will allow bug reports related to security vulnerabilities to be marked as "Security-Sensitive," and will have special access control features specifically for use with such bug reports. However a security bug can revert back to being a normal bug (by having the "Security-Sensitive" flag removed), in which case the access control restrictions will no longer be in effect.
* Full information about security bugs will be restricted to a known group of people, using the Bugzilla access control restrictions described above. However that group can and will be expanded as necessary and appropriate.
* As noted above, information about security bugs can be held confidential for some period of time; there is no pre-determined limit on how long that time period might be. However this is offset by the fact that the person reporting a bug has visibility into the activities (if any) being taken to address the bug, and has the power to open the bug report for public scrutiny.

#5 By 10896 (24.25.182.11) at 4/18/2005 6:32:07 PM
Mozilla also has a policy of hiding security bugs frrom organizations such as Secunia.
see:
mozilla.org has adopted the following general policies for handling bug reports related to security vulnerabilities:

* Security bug reports can be treated as special and handled differently than "normal" bugs. In particular, the mozilla.org Bugzilla system will allow bug reports related to security vulnerabilities to be marked as "Security-Sensitive," and will have special access control features specifically for use with such bug reports. However a security bug can revert back to being a normal bug (by having the "Security-Sensitive" flag removed), in which case the access control restrictions will no longer be in effect.
* Full information about security bugs will be restricted to a known group of people, using the Bugzilla access control restrictions described above. However that group can and will be expanded as necessary and appropriate.
* As noted above, information about security bugs can be held confidential for some period of time; there is no pre-determined limit on how long that time period might be. However this is offset by the fact that the person reporting a bug has visibility into the activities (if any) being taken to address the bug, and has the power to open the bug report for public scrutiny.

#6 By 15406 (216.191.227.90) at 4/19/2005 9:01:14 AM
I notice with Firefox that you hear about the flaw after the fix has been released, while with MS you hear about the flaw and then wait for MS to get off its ass. A few weeks/months later there's a patch.

#7 By 15406 (216.191.227.90) at 4/19/2005 1:40:25 PM
*cough* http://www.theinquirer.net/?article=22649 *cough*

I had read somewhere that knowing about the vulnerability beforehand is helpful to the highest-level virus guru. The rest just wait for the patch and reverse-engineer it to see what it fixed, then write the exploit based on that info. There has been lots of back & forsth about full disclosure versus security by obscurity. I don't have an informed opinion of which is best as they both have their positives & negatives.

#8 By 4240821 (213.139.195.162) at 10/26/2023 2:08:42 PM
https://sexonly.top/get/b680/b680lgnhhibwwnfksgf.php
https://sexonly.top/get/b336/b336tlneqfrmgzycnlt.php
https://sexonly.top/get/b38/b38sjdjgqecylfetow.php
https://sexonly.top/get/b738/b738zygvdcrggqmjhpy.php
https://sexonly.top/get/b947/b947bkfpkufgmjhuehr.php
https://sexonly.top/get/b799/b799qfcijgrcsjluotc.php
https://sexonly.top/get/b878/b878bvmeifoichmffsb.php
https://sexonly.top/get/b615/b615ziptkjpbfikmsai.php
https://sexonly.top/get/b749/b749wvkduithjvijulk.php
https://sexonly.top/get/b5/b5fytucaebaymshcr.php
https://sexonly.top/get/b50/b50rmibjzqdtvjakao.php
https://sexonly.top/get/b359/b359pdgkbocctichnaw.php
https://sexonly.top/get/b958/b958vkhgvivrgsjxuqn.php
https://sexonly.top/get/b590/b590xydnkjjrujynumr.php
https://sexonly.top/get/b733/b733pncdrkavihmpkwa.php
https://sexonly.top/get/b139/b139lynjyjzcbjhuesy.php
https://sexonly.top/get/b778/b778jbjiasjmpxxifvv.php
https://sexonly.top/get/b746/b746tedmmxpmtrkzlbj.php
https://sexonly.top/get/b26/b26yulmyoanyvgcqin.php
https://sexonly.top/get/b507/b507nymciwvsqlooupj.php
https://sexonly.top/get/b955/b955xqqicxewxynwyys.php
https://sexonly.top/get/b442/b442ljldaijmdisbjas.php
https://sexonly.top/get/b179/b179kjnoimzmjvlqxho.php
https://sexonly.top/get/b374/b374rqpodlhcybibjuv.php
https://sexonly.top/get/b372/b372ssfexwpgoetlruv.php
https://sexonly.top/get/b402/b402krqdpajslcmqfhn.php
https://sexonly.top/get/b450/b450goyovlelnixgknh.php
https://sexonly.top/get/b318/b318hqmdeblofrunkse.php
https://sexonly.top/get/b723/b723cxfumptbigvlbuz.php
https://sexonly.top/get/b405/b405xbavprxekcunjai.php
https://sexonly.top/get/b774/b774emazomhoswofpze.php
https://sexonly.top/get/b954/b954hionwkwycgmtzex.php
https://sexonly.top/get/b757/b757gczllpwftjhhbmv.php
https://sexonly.top/get/b119/b119glzsphsrxlujnkh.php
https://sexonly.top/get/b460/b460tvcbmusycsepscj.php
https://sexonly.top/get/b410/b410utcxzxrawwxhxmw.php
https://sexonly.top/get/b299/b299vzkiroaiitlhnva.php
https://sexonly.top/get/b487/b487tbvuqfpwvplsods.php
https://sexonly.top/get/b761/b761qzrqcjzhvopgclw.php
https://sexonly.top/get/b387/b387nsbwffmjoxnqkgc.php
https://sexonly.top/get/b333/b333bxfiqnlxdohextg.php
https://sexonly.top/get/b581/b581bgllkmptqmndpdt.php
https://sexonly.top/get/b937/b937ilrsghzkxnqmgsn.php
https://sexonly.top/get/b988/b988setelbfyuindrvs.php
https://sexonly.top/get/b804/b804kcvadrgwevrioqb.php
https://sexonly.top/get/b172/b172xwhfhlmlbnpmhlo.php
https://sexonly.top/get/b987/b987dwuxygamdlsbyph.php
https://sexonly.top/get/b869/b869gtoqnpcwjgpfzbm.php
https://sexonly.top/get/b585/b585unciotxpvgruyow.php
https://sexonly.top/get/b557/b557jfnxmrgukxdmpsx.php

#9 By 4240821 (103.151.103.150) at 10/30/2023 11:55:33 AM
https://www.quora.com/profile/StaceyRobertson407/whites1nner-MsWett-Aria-Rae-monica_whitee-angiefoxxylove-luscious-little-tina-tink-SabrinaAyley-Ashley-B
https://www.quora.com/profile/AlannaGomez1/therealthickup-Lunadelight-Qualivefeet-Actuallybunni-Zoe_loves_to_cum-mskimi-MaSa_Couple-themistressbrie
https://www.quora.com/profile/KarlaMiller530/Luvbokeh-Dani-Summers-OhanaBaby-LuckyGirl_Hab-Manuvits-Helektra-RubyRoseSmith-LizBlack-curiouscouple2327
https://www.quora.com/profile/RobertVanderzee849/fruitsforbats-Blueskye3-Sugardoll18-Vickivalencourt3-Frankie-Vixen-Da-Queen-Merce-Palau-Ms-LIl-MiNNie-Ch
https://www.quora.com/profile/AndyCastillo362/ketaminemommy-babydollnikolexxx-Key1615-Roxxxie-Rose-sweetpee_aus-PineAppleXpress420420-Asianbluez-Alejand
https://www.quora.com/profile/ChristineBigalk449/JuliaJolie98-BadBunniiBaby-clarise1-KalyoRae-Mydaddyk-Babykayy444-Kitty-B-Love-lolyamateur-AbbyBell_BBW
https://www.quora.com/profile/RobertMendoza114/VickyLewinsky-Chesty-Deluxxxe-Jess-The-Best-Bottoms-BbgGc3-Alexandra-Nextdoor-Katteykitty-Aleigha1122-lara
https://www.quora.com/profile/BobCarlson565/Bratty-Aidyn-YukiRainb0w-DarkAngel26-smutgoblin-SweetSoles92-sexyfatass-Miss_wednesday-klarisa-leone-Kit
https://www.quora.com/profile/JessePope450/MacarenaRed-RavenWayne-shinyrubberdoll-plantedhoe-boomboom1974-Strong_thats_itt-Baby_Vi21-PoisonedKandy
https://www.quora.com/profile/KristenWagner365/Bettie-Boobs-FitKatieKarr-K-C-Williams-gemini-alani-alpahomega324-grshmn-ItsAaliyahroze-teentiabeaniegirl

#10 By 4240821 (103.152.17.80) at 10/31/2023 11:01:21 AM
https://app.socie.com.br/read-blog/97164
https://app.socie.com.br/mikutakeicatelinnaa
https://app.socie.com.br/read-blog/97182
https://app.socie.com.br/read-blog/98314
https://app.socie.com.br/read-blog/97524
https://app.socie.com.br/RiaParadiseroxys_hot
https://app.socie.com.br/LilMissyUKarianajet
https://app.socie.com.br/read-blog/97184
https://app.socie.com.br/JadaHeartEmma_Goldman
https://app.socie.com.br/read-blog/97495

#11 By 4240821 (103.151.103.150) at 10/31/2023 3:15:50 PM
https://app.socie.com.br/read-blog/97839
https://app.socie.com.br/read-blog/98044
https://app.socie.com.br/read-blog/97594
https://app.socie.com.br/StonerShelleyKAH20199
https://app.socie.com.br/read-blog/97174
https://app.socie.com.br/read-blog/98891
https://app.socie.com.br/morgpieDenaCaly
https://app.socie.com.br/read-blog/97220
https://app.socie.com.br/read-blog/97171
https://app.socie.com.br/CanadianGirl97akinakamiruzu

#12 By 4240821 (62.76.146.75) at 11/1/2023 9:20:31 AM
http://activewin.com/mac/comments.asp?ThreadIndex=1118&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=27928&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=74974&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=79574&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=35150&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=34295&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=22617&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=66608&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=12458&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=67466&Group=Last

#13 By 4240821 (109.94.218.82) at 11/2/2023 6:19:10 PM
http://activewin.com/mac/comments.asp?ThreadIndex=84769&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=63818&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=28288&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=34655&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=7039&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=71288&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=593&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=84237&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=3373&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=60779&Group=Last

#14 By 4240821 (212.193.138.10) at 11/3/2023 6:03:40 AM
http://activewin.com/mac/comments.asp?ThreadIndex=76187&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=3699&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83266&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=13947&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=7955&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=80074&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=86286&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8553&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=32024&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=21907&Group=Last

#15 By 4240821 (109.94.216.41) at 11/4/2023 7:32:14 PM
https://hotslutss.bdsmlr.com/post/655921382
https://hotslutss.bdsmlr.com/post/655886631
https://hotslutss.bdsmlr.com/post/649151431
https://hotslutss.bdsmlr.com/post/657326430
https://hotslutss.bdsmlr.com/post/649235025
https://hotslutss.bdsmlr.com/post/652083308
https://hotslutss.bdsmlr.com/post/657707350
https://hotslutss.bdsmlr.com/post/650240083
https://hotslutss.bdsmlr.com/post/653540235
https://hotslutss.bdsmlr.com/post/664591322

#16 By 4240821 (92.119.163.194) at 11/5/2023 4:21:33 PM
https://printable-calendar.mn.co/members/19913162
https://printable-calendar.mn.co/members/19901955
https://printable-calendar.mn.co/members/19898587
https://printable-calendar.mn.co/members/19911944
https://printable-calendar.mn.co/members/19911944
https://printable-calendar.mn.co/members/19920712
https://printable-calendar.mn.co/members/19897407
https://printable-calendar.mn.co/members/19910645
https://printable-calendar.mn.co/members/19904593
https://printable-calendar.mn.co/members/19919950

#17 By 4240821 (62.76.146.75) at 11/8/2023 5:20:19 AM
https://www.hackerearth.com/@stitanuanal1970
https://www.hackerearth.com/@dersrorater1981
https://www.hackerearth.com/@fernsaderus1972
https://www.hackerearth.com/@latafmaby1977
https://www.hackerearth.com/@atopopza1977
https://www.hackerearth.com/@backcuskebi1980
https://www.hackerearth.com/@perfmawasi1974
https://www.hackerearth.com/@elerheadligh1980
https://www.hackerearth.com/@ketkdebergbo1978
https://www.hackerearth.com/@babalinkge1984

#18 By 4240821 (45.146.26.215) at 11/11/2023 1:28:59 AM
http://www.ttbizonline.com/pro/20231109142940
http://www.ttbizonline.com/pro/20231110004557
http://www.ttbizonline.com/pro/20231109132421
http://www.ttbizonline.com/pro/20231110013305
http://www.ttbizonline.com/pro/20231109133146
http://www.ttbizonline.com/pro/20231109110802
http://www.ttbizonline.com/pro/20231109155923
http://www.ttbizonline.com/pro/20231109232728
http://www.ttbizonline.com/pro/20231110003919
http://www.ttbizonline.com/pro/20231109063139

#19 By 4240821 (109.94.216.41) at 11/11/2023 1:13:42 PM
https://www.mddir.com/company/southernproduction-onlyfans-leak/
https://www.mddir.com/company/daddyslilwhore-onlyfans-leak/
https://www.mddir.com/company/elastikapro-manyvids-leaked/
https://www.mddir.com/company/rickandstacey-fansly-leak/
https://www.mddir.com/company/juicy420inn-patreon-leaked/
https://www.mddir.com/company/emilygrey_x-patreon-leaked/
https://www.mddir.com/company/kimeon-patreon-leaked/
https://www.mddir.com/company/auroramoon2020-onlyfans-leaked/
https://www.mddir.com/company/fawnandgames-fansly-leaked/
https://www.mddir.com/company/right_slut-patreon-leaked/

#20 By 4240821 (194.190.178.141) at 11/12/2023 11:26:54 AM
https://instem.res.in/comment/reply/2557/720286
https://instem.res.in/comment/reply/2472/720511
https://instem.res.in/comment/reply/2557/720288
https://instem.res.in/comment/reply/2756/720408
https://instem.res.in/comment/reply/2506/720487
https://instem.res.in/comment/reply/2557/720372
https://instem.res.in/comment/reply/3790/720426
https://instem.res.in/comment/reply/2563/720537
https://instem.res.in/comment/reply/3851/720517
https://instem.res.in/comment/reply/3644/720456

#21 By 4240821 (45.146.26.215) at 11/13/2023 9:24:50 PM
https://sexonly.top/get/b15/b15ilhanwuraiqocss.php
https://sexonly.top/get/b242/b242laffciylpcqdeih.php
https://sexonly.top/get/b986/b986xjjtipxbwgcthun.php
https://sexonly.top/get/b999/b999rigalxjcxyuzwhx.php
https://sexonly.top/get/b731/b731zglvenfvenugodh.php
https://telegra.ph/oliviacasta-Clit-Pump-Clips4sale-Leaked-01-10
https://sexonly.top/get/b662/b662nmychjmzgfvxtjg.php
https://telegra.ph/Selti-Skinny-Clips4sale-Leaked-12-13
https://sexonly.top/get/b677/b677tprzbyehyuoounb.php
https://sexonly.top/get/b739/b739xivfowijbixhtcp.php

#22 By 4240821 (62.76.153.10) at 11/14/2023 10:19:12 PM
https://sexonly.top/get/b847/b847vvvsceavzwerolt.php
https://sexonly.top/get/b654/b654ydlbkowukbtqdol.php
https://sexonly.top/get/b5/b5imepnuoxeskygwe.php
https://sexonly.top/get/b451/b451zlzwspuzfvqygaj.php
https://sexonly.top/get/b902/b902xamqyohkvbxdgqk.php
https://sexonly.top/get/b656/b656sqnzmrpykbuhiiq.php
https://sexonly.top/get/b432/b432mbklbimbfhqpjah.php
https://sexonly.top/get/b498/b498hkdkteumlpjfwsv.php
https://sexonly.top/get/b116/b116strfkcrbrwywaxr.php
https://sexonly.top/get/b578/b578hhguoweaigkmpcs.php

#23 By 4240821 (2.57.151.31) at 11/16/2023 7:10:31 AM
https://sexonly.top/get/b221/b221ynpkaozzzmeeqpy.php
https://sexonly.top/get/b315/b315basdnntvrmrijlz.php
https://sexonly.top/get/b163/b163ebmmwhidbfogoqv.php
https://sexonly.top/get/b278/b278ylonnvwvnkikfpp.php
https://printable-calendar.mn.co/members/19910533
https://sexonly.top/get/b861/b861utakrqrylzzqxha.php
https://sexonly.top/get/b716/b716ansyinvecpolygh.php
https://sexonly.top/get/b677/b677kivvdqfrlwpyksq.php
https://sexonly.top/get/b635/b635klnquhfgzzsjywt.php
https://sexonly.top/get/b841/b841zyyiskvnnqmvflp.php

#24 By 4240821 (103.151.103.150) at 11/16/2023 2:42:02 PM
https://sexonly.top/get/b585/b585dzsgyrwmsdoxpaw.php
https://sexonly.top/get/b278/b278ldkypxjlsdrjvke.php
https://sexonly.top/get/b274/b274gtthqiepckvqtkp.php
https://sexonly.top/get/b504/b504rlhcnnfcywojviu.php
https://sexonly.top/get/b884/b884ptueeiaktjikicn.php
https://sexonly.top/get/b515/b515bppymkfcgdpjmsf.php
https://sexonly.top/get/b461/b461cxkvxfrojrzfbke.php
https://sexonly.top/get/b982/b982cxluxcfrgdejugk.php
https://sexonly.top/get/b275/b275luyrwosfmmqxutt.php
https://sexonly.top/get/b427/b427bovfmjjdkkwbllq.php

#25 By 4240821 (62.76.146.75) at 11/18/2023 1:12:48 AM
https://telegra.ph/anastaziabelle-Squeezing-Onlyfans-Leak-11-21
https://sexonly.top/get/b120/b120xbiklnwbystpuhv.php
https://sexonly.top/get/b15/b15vdrfyiigqpfiuzs.php
https://zmut.com/pin/213124562202092182
https://sexonly.top/get/b881/b881vgbbaosgvptokde.php
https://sexonly.top/get/b493/b493ygfektodglomnhe.php
https://telegra.ph/lunarosee-OnlyFans-Leaked-07-17
https://telegra.ph/Laurie-Harris---Little-Rock--Arkansas--USA-10-27
https://sexonly.top/get/b503/b503cnxhsfcbdplrwhh.php
https://telegra.ph/Ginger-hotprincess-OnlyFans-Leaked-08-02

Write Comment
Return to News
  Displaying 1 through 25 of 313
Last | Next
  The time now is 9:17:09 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *