Firefox and Mozilla Suite Critical Security Alert--Mozilla Foundation Security Advisory 2005-42
For those of you using either Firefox or Mozilla Suite web browsers, the Mozilla Foundation has released a critical security alert called "Code execution via javascript: IconURL." There are two script injection vulnerabilities for Firefox and one for Mozilla Suite that could be used to steal cookies or sensitive data or to perform malicious actions. To avoid the problem until an update is released, the Mozilla Foundation recommends disabling java in the browsers preferences. One may also use the release candidate of Firefox 1.0.4 noted below. More... [Dana Baggett]
Saw something? Send a tip
The archive ran on reader tips. What did you see, where, and do you want the credit?