Hash: SHA1
US-CERT Current Activity
Mozilla Releases Firefox 2.0.0.14
Original release date: April 17, 2008 at 8:57 am
Last revised: April 17, 2008 at 8:57 am
Mozilla has released Firefox 2.0.0.14 to address a vulnerability in
the JavaScript engine. This vulnerability is due to memory corruption
errors during JavaScript garbage collection. Exploitation of this
vulnerability may allow a remote attacker to execute arbitrary code or
cause a denial-of-service condition. Products that use the Mozilla
rendering engine, such as Thunderbird and SeaMonkey, may also be
affected.
US-CERT encourages users to review Mozilla Foundation Security
Advisory 2008-20 and apply any necessary updates or workarounds.
Relevant Url(s):
<http://www.mozilla.org/security/announce/2008/mfsa2008-20.html>
<http://en-us.www.mozilla.com/en-US/>
====
This entry is available at
http://www.us-cert.gov/current/index.html#mozilla_releases_firefox_2_01
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)
iQEVAwUBSAdOpvRFkHkM87XOAQLcpwf+NDqWNyfnM2f5SckplpYxQO/6/DDc4f2y
5kNRa+3S3MH37DxMp//y+tOiXbGs3nAPgr7kvl5ggBUe/5OP188kCavkNzwDVhl2
rTjsFnFBV7A/5BEKgKaC3QoTXLR4WTl5l+ujilxdHUnv2Zce+qMKyV/OoIAWgSAn
UDHREDT31PGQ4/VXLdRp1fKFHYPaV3PMYw+kuQJRWPJsj3zxy2/xcvwpgAYj/0ch
GdJXAkYtjDIuv6GpH1+LWcHQ+evPDKBxWeLs1otBuQ9iODpnbsDLmiQinH/6wg6w
4SODYBknkeNfFgOdWXwfmyXt1JAz9SsadE1KSfxkdg899x6WascRsg==
=mJsj
-----END PGP SIGNATURE-----
0 comments:
Post a Comment