[Flaw found in Firefox] -



Flaw found in Firefox

Discuss Flaw found in Firefox



Posted by: ApM

A flaw has been discovered in the popular open-source browser Firefox that potentially could release sensitive information stored in memory, according to a report by security information company Secunia.

While the flaw is only rated as "moderately critical," the rapid adoption of the open-source browser may put a growing number of users at risk. Prior to the release of version 1.0, downloads of earlier versions of the browser had reached 8 million within the first 18 months.

Firefox versions 1.0.1 and 1.0.2 contain the flaw, Secunia said.

The vulnerability stems from an error in the JavaScript engine, according to Secunia. This error can expose arbitrary amounts of heap memory after the end of a JavaScript string. As a result, an exploit may disclose sensitive information in the memory.

Soruce: [url]http://news.com.com/Flaw+found+in+Firefox/2100-1029_3-5655861.html?tag=nefd.top[/url]

- Note: The Soruce link contains a test to see wether the security hole has affected you.



Posted by: Lasrix

i did that test.. i dont get whats with those chars?



Posted by: P.P. Mguire

hmm looks like im good then.



Posted by: harley3344

ahahaha it fails with ff and works with ie. shows that everyone should switch to firefox



Posted by: Greg

Yeah It just gave me a bunch of X's.

I have 1.0.4 and have the JavaScript engine disabled anyway (it runs too slow for me, I just view the page in IE)