View NewsSubmit News

Firefox and Thunderbird get updates

Both Firefox and Thunderbird received minor updates today, not just for Mac OS X but also for Windows and Linux.  Firefox 2.0.0.1 is available for download immediately via Mozilla’s web site, and fixes a number of critical security (and other) issues:

XSS using outer window’s Function object
RSS Feed-preview referrer leak
Mozilla SVG Processing Remote Code Execution
XSS by setting img.src to javascript: URI
LiveConnect crash finalizing JS objects
Privilege escallation using watch point
CSS cursor image buffer overflow (Windows only)
Crashes with evidence of memory corruption (rv:1.8.0.9/1.8.1.1)

Leave a comment