Thursday, October 05, 2006

Firefox Flaws...

The open−source Firefox Web browser is critically flawed in the way it handlesjava_script, two hackers said Saturday, September 30. An attacker could commandeer a computer running the browser simply by crafting a Webpage that contains some maliciousjava_script code, Mischa
Spiegelmock and Andrew Wbeelsoi said in a presentation at the ToorCon hacker conference.

The flaw affects Firefox on Windows, Apple Computer's Mac OS X and Linux, they said. The flaw is specific to Firefox's implementation ofjava_script, a 10−year−old scripting language widely used on the Web. In particular, various programming tricks can cause a stack overflow
error, Spiegelmock said. The implementation is a "complete mess," he said. "It is impossible to patch."
Source: http://news.com.com/Hackers+claim+zero−day+flaw+in+Firefox/2100−1002_3−6121608.html?tag=nefd.top

0 Comments:

Post a Comment

<< Home