Firefox 3.0.1 patches Mac-only bug

Fixes Apple-reported flaw that hackers could use to hijack Macs.

By Gregg Keizer

CONNECTIONS
Apple
Mozilla
Fri, July 18, 2008Computerworld Mozilla Corp. patched three critical vulnerabilities in Firefox 3.0 this week, including a Mac-specific bug reported by Apple Inc., not just two as originally reported.

Firefox 3.0.1, the first update to the browser since it launched a month ago, fixed the same two flaws that were patched Tuesday in the older version 2.0.0.16, said Mozilla, but also quashed a Mac OS X-only vulnerability reported to the company by Drew Yao, an engineer in Apple's security group.

Last month, Yao had reported multiple bugs in Ruby, the object-oriented scripting language, to the open-source project. Apple patched those vulnerabilities in its own Mac OS X in late June.

A bug in how Firefox processes GIF-format images could be used by attackers to crash the browser, said Mozilla's security advisory, and "potentially execute arbitrary code." Firefox 2.0 is not affected, Mozilla said.

Details of the bug, however, were not publicly available on Bugzilla, Mozilla's bug tracking and management system.

Firefox 3.0.1, which Mozilla released Wednesday afternoon, also addressed several stability issues , fixed a problem with the anti-phishing/anti-malware blacklist, and took care of a printing problem.

Users can download Firefox 3.0.1 for Windows, Mac OS X and Linux from the Mozilla site, call up the browser's built-in updater or wait for the automatic update notification, which typically appears within 24 to 48 hours.

Loading...
Network MarketSpace
White Papers
The Challenge of a Demanding Network Infrastructure
Today's data centers are expanding as demand for data and storage continues to grow exponentially. Learn more »
Reduce Infrastructure and Administrative Costs
The Brocade® FastIron® CX Series of switches provides new levels of performance. Learn more »
A New Generation of Application Delivery Controllers (ADCs)
Learn more about Brocade® ServerIron® intelligent application delivery and traffic management solutions. Learn more »
Want to Offer a Superior User Experience?
Control a "boundary-less" enterprise with scalable solutions. Learn more »
Realize Potential Without Increasing Your Risk
Combining Brocade's high-performance infrastructure and McAfee's Web gateway solution ensures trusted environments. Learn more »
Brocade and Imperva: Providing Best-of-Breed Products
Web applications have become the backbone of business in nearly every segment of the economy. Learn more »
 
SPONSORED LINKS
 

Maximizing the Business Value of the PC Infrastructure

Enterprise PBX Comparison Guide

Getting Value from Outdated Networking Equipment

Seven Ways ITIL Can Help You in an Economic Downturn

Data Loss Prevention: A Better Way to Approach Security

Learn how to managing client systems in the enterprise.

Cloud Computing: Read about VMware's compelling vision & set of products

Top-line Performance that's Bottom-line Efficient

Accenture: Outsourcing for uncertain times. Click to learn more.

White Paper: 8 Key Ingredients to Building an Internal Cloud

Read about virtualization and consolidation effort best practices

Building the Virtualized Enterprise with VMware Infrastructure

Top 10 Business and IT Drivers for the Wealth Management Sector

Bottom-Line Benefits of Virtualization

White Paper: The Building Blocks for Cloud Computing

Oracle's Application Grid Technical Demo

Next-Generation Application Servers and Infrastructure

Application Infrastructure at Enterprise Organizations

Achieving Business Agility with Application Grid

Learn about The Information Technology Infrastructure Library.

Achieving Pervasive Performance Management

Automating the Generation and Secure Distribution of Excel Reports

Get Google Enterprise Search for your business information.

Accenture IT Consulting: Enabling high performance. More...

Top Five CIO Challenges

Enterprise PBX Buyer's Guide

Secondary Market Primer: Your Network at Half Price

Taking the Service Desk to the Next Level

Why Data Loss is Increasing--and What You Can Do About It

Communications and Collaboration Needs at Business Organizations

Using Open Source to Deploy Web Applications

Mid-Sized Company CIO Community: infoBOOM!

Accenture IT Consulting: Logical meets technological. More . . .

Stop Application Fraud at the Source with Device Reputation

Learn about the VMware vSphere (TM) & Intel (R) Xeon (R) Processor 5500 Series

Learn how a virtualized enterprise can help your company reduce costs

Why Isn't Server Virtualization Saving Us More?

8 Key Ingredients to Building an Internal Cloud

Data Center Optimization: Three Key Strategies

A CIO Executive Guide: Cloud Computing Looms Big on the Horizon

Oracle WebLogic Server Technical Demo

Data Grids and Service-Oriented Architecture

Achieving the Impossible: Unlimited Application Scalability

A Middleware Foundation for Application Grid

Tips for successful virtualization management.

Smart Decisions: The Role of Key Performance Indicators

Gartner Shares Predictions for 2009

Introducing the new HP ProLiant G6 server family

Accenture: Outsourcing for Competitive Advantage. More...

Better spam protection with Postini for just $1/user/mo

 
 
RESOURCE CENTER