AfterDawn: Tech news

Mozilla patches 12 Firefox bugs

Written by Andre Yoskowitz @ 21 Oct 2010 12:10 User comments (3)

Mozilla patches 12 Firefox bugs Mozilla has patched 12 vulnerabilities in the popular Firefox browser today, including an updated patch for the highly publicized "binary planting" issue that was initially patched last year.
8 of the vulnerabilities were rated "critical," meaning the bugs could be used to hijack a system. After the critical ones there were two "high," one "moderate" and finally a single "low."

PCAdvisor explains that the 'binary planting' vulnerability has also been called 'DLL load hijacking'.

Says the site: "Regardless of the term, the flaw existed in Windows applications that do not call DLLs (dynamic linked libraries) or executable files using a full path name. Instead, they rely on the filename alone. The latter can be exploited by attackers, who can trick the program into loading a malicious file with the same title as a required DLL or executable. If attackers can con users into visiting malicious websites or remote shared folders, or get them to plug in a USB drive, they can compromise a computer and infect it with malware."



Mozilla also recommends updating to the latest version of the browser if you have not already.

Previous Next  

3 user comments

122.10.2010 15:06

This is a problem with open source that becomes popular, it's too easy to exploit!

223.10.2010 09:04

Originally posted by Mr-Movies:
This is a problem with open source that becomes popular, it's too easy to exploit!
True

325.10.2010 03:42

Originally posted by juventini:
Originally posted by Mr-Movies:
This is a problem with open source that becomes popular, it's too easy to exploit!
True
Double True!
This message has been edited since its posting. Latest edit was made on 25 Oct 2010 @ 3:44

Comments have been disabled for this article.

Latest news

Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets Roomba Combo j7+ review - Clever trick allows robot vacuum finally to tackle home with rugs and carpets (06 Jun 2023 9:19)
Roomba Combo j7+ is the very first Roomba model to combine robot vacuum with mopping features. And Roomba Combo j7+ does all that with a very clever trick, which tackles the problem with mopping and carpets. But is it any good? We found out.
Neato, the robot vacuum company, ends its operations Neato, the robot vacuum company, ends its operations (02 May 2023 3:38)
Neato Robotics has ceased its operations. American robot vacuum pioneer founded in 2005 has finally called it quits and company will cease its operations and sales. Only a skeleton crew will remain who will keep the servers running until 2028.
5 user comments
How to Send Messages to Yourself on WhatsApp How to Send Messages to Yourself on WhatsApp (20 Mar 2023 1:25)
The world's most popular messaging platform, Meta-owned WhatsApp has enabled sending messages to yourself. While at first, this might seem like an odd feature, it can be very useful in a lot of situations. ....
18 user comments
How to Enable Bluetooth on Stadia Controller How to Enable Bluetooth on Stadia Controller (11 Feb 2023 1:04)
Google shut down its streaming game service Stadia late last month and this means that some people have Stadia controllers lying around that seem to be of no use. That is fortunately not the ....
2 user comments
Guide: How to Kick Unwanted Guests from Your Netflix Account Guide: How to Kick Unwanted Guests from Your Netflix Account (26 Jan 2023 2:14)
Sharing a Netflix account with a person in a different location is possible and indeed very common, although the company doesn't necessarily enjoy this behavior from their customers. However, ....

News archive