Archive

Posts Tagged ‘WWW’

Update Your Firefox to 3.5.6 – Fix for 3 Critical flaws

Mozilla yesterday released Firefox version 3.5.6. The update resolves three critical security holes, and also patches up some stability issues.

The 3 critical flaws are

  • Integer overflow, crash in libtheora video library
  • Memory safety fixes in liboggplay media library
  • Crashes with evidence of memory corruption (rv:1.9.1.6/ 1.9.0.16)

All three of the critical vulns create a possible mechanism for hackers to inject hostile code onto vulnerable systems, via drive-by download attacks or similar malign trickery. Possible consequence of leaving the flaws unfixed can be found a security advisory by Secunia here.

Reblog this post [with Zemanta]

Categories: Computer, Security Tags: , ,