stargeek
PHP news website logo.
home    PHP scripts    articles    seo tools    links    search    contact    shop    realtors


Critical Flaws Found In Mozilla Products







Critical Flaws Found In Mozilla Products

Critical Flaws Found In Mozilla Products 09/15/2004 03:45 PM

After releasing their much awaited preview release of Firefox 1.0, the Mozilla Foundation has issued a warning about seven critical security issues with three of its flagship products.

Any product versions prior to Mozilla 1.7.3, Firefox 1.0PR and Thunderbird 0.8 are considered vulnerable. Mozilla recommends that all users upgrade their affected software to prevent exploitation of their systems.

All current releases of mentioned software are considered "patched" against these new found vulnerabilities. Users of affected software should download the most recent version of their products as soon as possible to ensure their continued safe functionality.


View: Mozilla Foundation
View: Neowin Forum Discussion
News source: Internetnews.com

Read full story...




This is a GrokNews Entry: (what is grok?)





Similar Items

Critical Flaws Found In Mozilla Products

Grok Headline matches for Critical Flaws Found In Mozilla Products

Critical Flaws Flagged in Mozilla,
Thunderbird


Critical Flaws Flagged in Mozilla,
Thunderbird
09/15/2004 01:54 PM
The open-source project plugs vulnerabilities in its Web browser and e-mail client.

10 Security Flaws Found in Mozilla


10 Security Flaws Found in Mozilla 09/15/2004 07:48 PM
While Microsoft's Internet Explorer has become the bane of computer security, switching to Mozilla may not be the simple answer after all. Security firm Secunia has issued a "highly critical" advisory that details 10 separate vulnerabilities found in Mozilla, Firefox and Thunderbird. The flaws can be exploited remotely, allowing an attacker to compromise a system and expose sensitive data. Mozilla users are urged to upgrade to the latest releases of each application, which contain the necessary fixes.

10 Security Flaws Found in Mozilla
September 15 - 6:26 PM ET News in Brief
| While Microsoft's Internet Explor


10 Security Flaws Found in Mozilla
September 15 - 6:26 PM ET News in Brief
| While Microsoft's Internet Explor
09/15/2004 10:58 PM
BetaNews Sep 16 2004 2:59AM GMT

Critical flaws in IE and Outlook
discovered


Critical flaws in IE and Outlook
discovered
04/01/2005 12:12 PM
Vulnerabilities allow for remote code execution, creating the potential for attackers to install backdoor Trojans.

New Critical Flaws Discovered in Windows


New Critical Flaws Discovered in Windows 12/30/2004 06:28 AM
http://www.wininformant.com/inc/images/WinInfo/security_temperature.gi f

Microsoft warns of critical flaws


Microsoft warns of critical flaws 07/15/2004 05:17 AM
Windows users are being urged to update their PCs after critical flaws were found in some Microsoft programs.

US-CERT: Critical Flaws in libpng


US-CERT: Critical Flaws in libpng 08/05/2004 10:21 AM
Multiple vulnerabilities in the popular PNG reference library puts users at risk of malicious hacker attacks.

Critical flaws plague Kerberos


Critical flaws plague Kerberos 09/02/2004 08:15 AM
ZDNet Sep 2 2004 12:09PM GMT

Microsoft patches three critical browser
flaws


Microsoft patches three critical browser
flaws
07/30/2004 03:44 PM
The software giant hopes that the trifecta of fixes will lasso the Download.Ject Trojan horse.

Symantec patches critical firewall flaws


Symantec patches critical firewall flaws 05/13/2004 09:35 AM
ZDNet May 13 2004 1:36PM GMT

Symantec patches four critical firewall
flaws


Symantec patches four critical firewall
flaws
05/13/2004 09:40 AM

Patch available for multiple critical
flaws in Oracle


Patch available for multiple critical
flaws in Oracle
09/05/2004 10:10 PM
NGSSoftware Insight Security Research (Aug 31 2004)

Multiple critical flaws identified in
Oracle


Multiple critical flaws identified in
Oracle
08/05/2004 01:56 AM

Direct and Related Links for 'Multiple critical flaws identified in Oracle'

“Thirty-four vulnerabilities — the majority of them critical — have been identified in multiple versions of Oracle’s database server. “Most of the flaws are critical,” said David Litchfield, a researcher at UK-based NGSSoftware, whose company discovered the flaws. “One allows an attacker to gain control of the database server without a userID or password. Others allow low-privileged users (i.e. those that do have a userID and password) to gain complete control of the database server.”…

Patches issued for critical RealPlayer
flaws


Patches issued for critical RealPlayer
flaws
06/24/2005 06:55 PM

RealNetworks has issued patches to four vulnerabiliites in its RealPlayer media software, some of which could allow an attacker to run unauthorized code on the user's computer.

The most serious of the bugs, which affects RealPlayers on the Windows, Macintosh and Linux operating systems, takes advantage of a bug in the RealText file format that is used in SMIL (Synchronized Multimedia Integration Language) files, according to Michael Sutton, director of iDefense's labs. "This is something that somebody could be vulnerable to without really taking much action. They could double click on a file, or go to a URL that somebody sent them in an mail."

Sutton has not yet seen anyone publicly release software that could take advantage of any of the four bugs, but researchers at iDefense labs in Reston, Va., have privately developed code that exploits the RealText vulnerability.

The other RealPlayer flaws could be triggered by malicious code inserted into MP3, AVI, (audio video interleaved) or RM (real media) files, and affect only the Windows version of RealPlayer, according to an advisory issued by RealNetworks.

Version 3 of the Rhapsody player for RealNetworks's online music service is also affected by one of the vulnerabilities, RealNetworks said.

More information on the vulnerabilities can be found here: http://service.real.com/help/faq/security/050623_player/EN/

SEE ALSO:

  • Security concerns to stunt e-commerce growth
  • Alleged UK bank scammer still at large
  • ADVERTISEMENT
    Sun Microsystems
    See what Sun and AMD do for Wall Street. sun.com/share


    Critical Flaws Affront Microsoft's
    FrontPage


    Critical Flaws Affront Microsoft's
    FrontPage
    09/26/2002 10:41 AM
    The software giant warns that vulnerability in its FrontPage Extension Server could allow an attacker to crash your servers or run any code.

    Security Experts to Microsoft: SP2 Has
    Critical Flaws


    Security Experts to Microsoft: SP2 Has
    Critical Flaws
    08/20/2004 06:23 AM
    German Internet security experts Heise Security have discovered what it calls two "flaws" in Service Pack 2. Microsoft has said its Service Pack 2 offers users the latest security "innovations," but Internet security experts said hackers could exploit cracks in SP2 defences to exploit a user's computer.

    According to Heise Security, "Computer hackers could evade SP2's new security features and infect a computer that uses Windows with a virus or a worm." Heise further explains that Windows also does not source information properly if files are overwritten so that it can "be tricked to execute files from the Internet" without sparking a warning, even if users install the new SP2 update.

    A Microsoft spokesperson addressed the warning by saying, "Microsoft has investigated these reports and is not aware of any instance in which an attacker could specifically bypass the service in email or a Web browser to allow a malicious attacker access to a user's system. We continue to encourage customers to review and install Windows XP SP2."

    View: More Information

    Read full story...

    Real Patches Critical Media Player Flaws


    Real Patches Critical Media Player Flaws 06/11/2004 02:49 PM

    Microsoft Airs Critical Identity
    Spoofing Flaws


    Microsoft Airs Critical Identity
    Spoofing Flaws
    09/05/2002 10:28 AM
    UPDATE: Once again, Microsoft is forced to whip up a slew of patches; this time, flaws that enable perpetrators to spoof Web sites are deemed 'critical.'

    Unscheduled Security Update Fixes
    Critical IE Flaws


    Unscheduled Security Update Fixes
    Critical IE Flaws
    07/30/2004 05:42 PM
    Microsoft issues a cumulative update that addresses three critical vulnerabilities related to graphics files and cross-domain execution.

    U.S. government, companies warn of
    critical Oracle flaws


    U.S. government, companies warn of
    critical Oracle flaws
    09/03/2004 06:30 PM
    US-CERT has issued an alert citing several security flaws in Oracle products that could be used to shut down or take control of vulnerable systems or to corrupt or steal data from Oracle databases.

    Chinese firm finds critical flaws in
    Windows


    Chinese firm finds critical flaws in
    Windows
    12/24/2004 12:40 PM
    ZDNet Dec 24 2004 12:02AM GMT

    US government, companies warn of
    critical Oracle flaws


    US government, companies warn of
    critical Oracle flaws
    09/02/2004 03:33 PM
    BOSTON - The U.S. government's Computer Emergency Response Team (US-CERT) and software security companies have issued warnings about a number of security vulnerabilities in versions of Oracle Corp.'s software.

    Security pros warn of critical flaws in
    Kerberos


    Security pros warn of critical flaws in
    Kerberos
    09/01/2004 06:49 PM
    ZDNet Sep 1 2004 10:27PM GMT

    Patch Tuesday Brings Fixes for 2
    Critical Security Flaws


    Patch Tuesday Brings Fixes for 2
    Critical Security Flaws
    07/15/2004 12:17 AM
    “Microsoft patched two critical flaws in its software in a batch of seven security bulletins released today [Tuesday] as part of the company’s monthly ‘Patch Tuesday.’ Each of the two critical flaws could allow an attacker to take complete control of a Windows computer over the Internet. “

    Security pros warn of critical flaws in
    Kerberos (cont.)


    Security pros warn of critical flaws in
    Kerberos (cont.)
    09/01/2004 07:17 PM
    Vulnerabilities in technology widely used for network authentication leave computers open to attack.

    Real Patches Critical Media Player Flaws
    (PC World)


    Real Patches Critical Media Player Flaws
    (PC World)
    06/11/2004 09:49 AM
    PC World - Security holes could allow attackers to run malicious code.

    [nisr@nextgenss.com: Patch available for
    multiple critical flaws in Oracle]


    [nisr@nextgenss.com: Patch available for
    multiple critical flaws in Oracle]
    09/01/2004 04:58 PM
    David Ahmad (Sep 01 2004)

    Flaws found in Windows XP SP2


    Flaws found in Windows XP SP2 08/19/2004 07:54 AM
    TechTree Aug 19 2004 12:06PM GMT

    Critical Exploit Found in AIM


    Critical Exploit Found in AIM 08/10/2004 04:58 AM

    Two Critical Bugs found in IE


    Two Critical Bugs found in IE 06/08/2004 05:14 PM

    "4 more critical exploits are found in
    IE"


    "4 more critical exploits are found in
    IE"
    07/14/2004 03:29 AM

    New Microsoft security flaws found


    New Microsoft security flaws found 08/20/2004 12:25 AM
    Internet security experts have found two "flaws" with Microsoft's long-awaited security update for its Windows XP operating system but the software giant insists that the new Service Pack 2 (SP2) is secure. Microsoft says SP2 offers users the latest security "innovations" but Internet security experts say hackers could exploit cracks in SP2 defences to exploit a user's computer. Microsoft began rolling out SP2 this week. It says the update fixes several security holes and provides new protective features.

    Flaws found in Cisco, Juniper and IBM
    kit


    Flaws found in Cisco, Juniper and IBM
    kit
    04/12/2005 06:49 PM
    ZDNet UK Apr 12 2005 11:00PM GMT

    Opera 7 Security Flaws Found


    Opera 7 Security Flaws Found 02/04/2003 08:52 PM
    "...a ground up rewrite of the rendering engine and a short beta testing process was going to result in some holes. Even so, Opera still in a league of it's own when it comes to security and privacy. This maybe only the 5th problem Opera has had in 7 years."

    New flaws found in Microsoft security
    (AFP)


    New flaws found in Microsoft security
    (AFP)
    08/20/2004 04:42 AM
    AFP - Internet security experts have found two "flaws" with Microsoft Corp's long-awaited security update for its Windows XP operating system, but the software behemoth insists that the new SP2 is secure.

    Security Flaws Found in Outlook, IE


    Security Flaws Found in Outlook, IE 04/01/2005 10:29 PM
    Two major security flaws were discovered in Microsoft's Internet Explorer and Outlook software Thursday by research firm eEye Digital Securities. According to the firm's Web site, vulnerabilities exist in both programs that allow malicious code to be executed with minimal user interaction.

    New flaws found in Microsoft security


    New flaws found in Microsoft security 08/20/2004 04:15 AM
    New Straits Times Aug 20 2004 8:39AM GMT

    Another critical Windows vulnerability
    found


    Another critical Windows vulnerability
    found
    03/21/2003 01:36 PM
    Another critical Windows vulnerability found

    track this site | 3 links


    Critical Oracle flaw found


    Critical Oracle flaw found 12/11/2003 09:38 AM
    Personal Computer World Dec 11 2003 9:10AM ET
    Grok Description matches for Critical Flaws Found In Mozilla Products
    GrokA matches for Critical Flaws Found In Mozilla Products

    Critical Flaws Found In Mozilla Products

    The following phrases have been identified by the grok system as matching this entry:

















    Also check out:


    Grok

    Ipod Porn on the
    Rise

    Brief Abstract of
    Wikipedia's
    Mesothelioma Cancer
    page

    Get first aid
    instructions in your
    cell phone

    IE is crap
    JSPWiki gains
    podcasting support

    Quantum Security
    Realised

    Has big media jumped
    the shark?

    Marian Carr Knox
    paying attention
    House votes to give
    itself pay raise

    A Black Eye for CBS
    News

    A Veteran Who
    Testified To John
    Kerry About
    Atrocities He
    Committed In The
    Vietnam War Is Now
    Claiming That The
    Democratic
    Presidential
    Candidate Coerced
    Him To Tell Tales

    it's even worse than
    we thought

    If Allah is correct
    I believe we have
    officially reached
    the point where
    nothing DAN BLATHER
    says can be trusted
    -- including A and
    THE

    hosting the little
    brat this week: its
    actual parent at
    Silflay Hraka

    Likely Bedfellows -
    If it's good enough
    for 60 Minutes, it's
    good enough for the
    DNC

    says CBS needs to
    prove the memos are
    authentic

    Memos on Bush Are
    Fake but Accurate,
    Typist Says

    "Document experts
    say CBS ignored memo
    'red flags.'"

    "YOU CAN HAVE
    INFORMATION ANARCHY!
    YOU HAVE TO LOOK AT
    WHO THESE PEOPLE
    ARE!!! WE HAVE TO
    PUT SOME SCRUTINY ON
    THE BLOGGERS!!!!!"

    CBS will offer a
    statement at noon

    The Online
    Journalism Review
    wonders if bloggers
    can win the war with
    comment spammers

    What is the Verdict
    on Multiple Adsense
    Ads

    LAMP (Perl)
    Developer for
    e-Publishing

    Sam's Club Falcon
    Set

    Cyborg Cockroach
    Democrats Score Win
    in Fight Over Nader
    in Florida (Reuters)

    Bush Says Concerned
    About Democracy in
    Russia (Reuters)

    Britain Lawmakers
    Seek Security Review
    (AP)

    VoIP interop:
    built-in or bolt-on?

    Infineon Admits DRAM
    Price Fixing

    Immigration, police
    share data in trawl
    of 'crime hot-spots'

    Picture messaging -
    it's worse than you
    thought

    Nation hangs up on
    cellphones

    Infineon pleads
    guilty to memory
    price-fixing

    Witchcraft
    repackaged

    General purpose
    dynamic array - Judy

    MDKSA-2004:093 -
    Updated squid
    packages fix DoS
    vulnerability

    SUSE Security
    Announcement:
    apache2
    (SUSE-SA:2004:032)

    MDKSA-2004:094 -
    Updated
    printer-drivers
    packages fix
    vulnerability in
    foomatic

    MDKSA-2004:095 -
    Updated gdk-pixbuf
    packages fix image
    loading
    vulnerabilities

    PHP Vulnerability N.
    1

    Siemens SF65 Swinger
    Phone

    Ogo Vs. Blackberry
    Critical Mozilla
    Vulnerabilities
    Fixed in New
    Versions

    Hidden Costs of
    Online CRM - Part 2
    (NewsFactor)

    Oracle Earnings Beat
    Analyst Forecasts
    (NewsFactor)

    PlaylistMag.com
    iTunes, iPod Web
    site launches
    (MacCentral)

    Microsoft Not Trying
    To Hijack Anti-Spam
    Spec (NewsFactor)

    Livewire: Back to
    School Means Back to
    Advergames (Reuters)

    Football hooligans
    trapped by FBI

    LogicLibrary Buy
    Will Swat Bugs

    Media, Blogs, Truth
    and Consequences

    BLOG SUCCESS
    FORMULA: FILL AN
    UNMET NEED

    what is grok?