Thursday, April 17, 2008

US-CERT Current Activity - Mozilla Releases Firefox 2.0.0.14

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

US-CERT Current Activity

Mozilla Releases Firefox 2.0.0.14

Original release date: April 17, 2008 at 8:57 am
Last revised: April 17, 2008 at 8:57 am


Mozilla has released Firefox 2.0.0.14 to address a vulnerability in
the JavaScript engine. This vulnerability is due to memory corruption
errors during JavaScript garbage collection. Exploitation of this
vulnerability may allow a remote attacker to execute arbitrary code or
cause a denial-of-service condition. Products that use the Mozilla
rendering engine, such as Thunderbird and SeaMonkey, may also be
affected.

US-CERT encourages users to review Mozilla Foundation Security
Advisory 2008-20 and apply any necessary updates or workarounds.

Relevant Url(s):
<http://www.mozilla.org/security/announce/2008/mfsa2008-20.html>

<http://en-us.www.mozilla.com/en-US/>

====
This entry is available at
http://www.us-cert.gov/current/index.html#mozilla_releases_firefox_2_01

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.7 (GNU/Linux)

iQEVAwUBSAdOpvRFkHkM87XOAQLcpwf+NDqWNyfnM2f5SckplpYxQO/6/DDc4f2y
5kNRa+3S3MH37DxMp//y+tOiXbGs3nAPgr7kvl5ggBUe/5OP188kCavkNzwDVhl2
rTjsFnFBV7A/5BEKgKaC3QoTXLR4WTl5l+ujilxdHUnv2Zce+qMKyV/OoIAWgSAn
UDHREDT31PGQ4/VXLdRp1fKFHYPaV3PMYw+kuQJRWPJsj3zxy2/xcvwpgAYj/0ch
GdJXAkYtjDIuv6GpH1+LWcHQ+evPDKBxWeLs1otBuQ9iODpnbsDLmiQinH/6wg6w
4SODYBknkeNfFgOdWXwfmyXt1JAz9SsadE1KSfxkdg899x6WascRsg==
=mJsj
-----END PGP SIGNATURE-----

0 comments:

Subscribe via email

Enter your email address:

Delivered by FeedBurner

Blog Archive