Newsletters

Select newsletters below and click the button to sign up!

Boston News NY News
DC News Internet Daily
SiliconValley News
InternetNews Business Report




Become a Marketplace Partner



Partner With Us















Internetnews Bloggers

Recent Entries

Archives

April 2009
Sun Mon Tue Wed Thu Fri Sat
      1 2 3 4
5 6 7 8 9 10 11
12 13 14 15 16 17 18
19 20 21 22 23 24 25
26 27 28 29 30    

Monthly Archives

Search The Blog

Netstat -vat by Sean Michael Kerner (bio)

A command line view of IT



Mozilla misses a flaw. Firefox 2.0.0.20 coming Friday

sr-firefox3.jpg
From the "no one is perfect" files:

As it turns out Firefox 2.0.0.19 IS NOT the final Firefox 2.x release. Mozilla has admitted that it missed patching a flaw in Firefox 2.0.0.19 and is now in the process of pushing out a patched version in Firefox 2.0.0.20. The exact flaw that was missed by Mozilla is not being publicly reported at this time. At first Mozilla meeting notes on the issue simply stated:

The Firefox 2.0.0.19 build we shipped was incomplete * Going to ship a Firefox 2.0.0.20 (sad face) as soon as possible
In a mailing list posting Mozilla developer Mike Beltzner provided just a little bit more detail.
We missed a fix due to an innocent clerical error in the build  process, and will now be including it. No big deal.
Beltnzer added that it was a Windows-only omission, and happened at the point where Mozilla packages and signs builds.

Seems innocent enough. But in my opinion still a cause for concern. Reverse engineering flaws is not an easy process, but its not impossible. With simple tools like Metasploit out there that 'weaponize' vulnerabilities for point and click execution there is an obvious need for a quick patch here. That said, Mozilla has updated Firefox 3.x properly and it is encouraging all 2.x users to move to 3.x. So hey you Firefox 2.x users - here's another wakeup call for you!

| Comments (2) | TrackBacks (0) | Share

0 TrackBacks

Listed below are links to blogs that reference this entry: Mozilla misses a flaw. Firefox 2.0.0.20 coming Friday.

TrackBack URL for this entry: https://swarm.jupitermedia.com/mt-tb.cgi/6098

2 Comments

haywould said:

wake up to *this*, I use FF 2, and I dont want 3, ever.


Firefox 3 is an incredible chunk of crapware.
Firefox 3 crashes constantly, particularly if it can take a 95% composed message with it.
IT is not compatable with Realplayer's download capability, but my biggest complaint is it crashes and crashes and crashes and crashes and crashes. It should be renamed "Woops."

Surprised it's by the same company as steady and dependable Firefox 2.

Leave a comment