PDA

View Full Version : Flaw found in Fire Fox



peat moss
04-06-2005, 12:45 AM
Its " NOT"rated as critical , there's a test to see if affected . It's found in the newer releases . Ran the test but did not make sence to me to be honest . Mabye some one else could try and explain better ?



http://news.zdnet.com/2100-1009_22-5655861.html




Test : http://secunia.com/mozilla_products_arbitrary_memory_exposure_test/


Ran the test again after ccleaner , less mumbo jumbo ! :) I'm not trying to play chicken little , but I like to know about this shit. When FF has a patch witch ,I'm sure is soon . I like to have an idea what I'm downloading. I'm home alone tonite so I'm bored . :)

tesco
04-06-2005, 01:37 AM
it's reading the info in youyr memory then posting it into that text area. ;)

peat moss
04-06-2005, 01:44 AM
it's reading the info in youyr memory then posting it into that text area. ;)



So ? whats the problem , it can see passwords ? Not like I do online banking , but mabye that would a problem ? Via java script ?

Peerzy
04-06-2005, 02:05 AM
Type in your email passwords, go to a dodgy site, boom they have your passwords without you knowing.

Harsh!
04-06-2005, 03:31 AM
Wonderful browser Im told....NOT!!!!!
lol

Thanks for heads up!!!

sparsely
04-06-2005, 03:34 AM
there's no perfect browser. :\

fkdup74
04-06-2005, 04:07 AM
blah, big deal
so what? so someone can snag my FST password?
good, let someone else use my account to flame Busyman for a while....
i am growing tired of it already :lol:

DarthInsinuate
04-06-2005, 08:39 AM
apparently a release candidate of 1.0.3, which fixes the bug, was made available on Saturday, that's two days before Secunia made the report

{I}{K}{E}
04-06-2005, 08:55 AM
Firefox 1.0.3 will be released soon

lynx
04-06-2005, 09:47 AM
People who otherwise did not know of this vulnerability could analyse the test script and use it to create their own hacking scripts.

It's just downright irresponsible to release a test like that before a fix is available. :angry:

fkdup74
04-06-2005, 11:58 AM
It's just downright irresponsible to release a test like that before a fix is available. :angry:

indeed :cool:

peat moss
04-06-2005, 12:12 PM
Wonderful browser Im told....NOT!!!!!
lol

Thanks for heads up!!!


Did you check out the IE page ? :lol:

http://secunia.com/product/11/