Firefox 3.5.4 fixes critical memory flaws


Recommended Posts

Firefox 3.5.4 fixes critical memory flaws

Vulns found all alone in moonlight

By Kelly Fiveash,

28th October 2009

Mozilla trotted out Firefox 3.5.4 yesterday, which patches 16 vulns - 11 of which were critical bugs.

The browser maker said the 11 critical vulnerabilities were found in a number of components such as the Javascript and browser engines, the GIF color map parser, the strings-to-number converter, three third party media libraries and web worker calls.

Some of these crashes showed evidence of memory corruption under certain circumstances and we presume that with enough effort at least some of these could be exploited to run arbitrary code," said Mozilla.

The open source outfit had been expected to release Firefox 3.5.4 on 21 October, after shooting out a release candidate version of the update early last month.

Meanwhile, a beta of the next iteration of Mozilla's popular browser - Firefox 3.6 - might be squirted out later today.

Mozilla has already pushed the release of that version back several times, however.

Get your hands on the update here. http://www.mozilla.c...4/releasenotes/

The Register - http://www.mozilla.c...4/releasenotes/

Link to post
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...