Index  | Recent Threads  | Unanswered Threads  | Who's Active  | Guidelines  | Search
 

Quick Go »
No member browsing this thread
Thread Status: Active
Total posts in this thread: 30
Posts: 30   Pages: 3   [ Previous Page | 1 2 3 | Next Page ]
[ Jump to Last Post ]
Post new Thread
Author
Previous Thread This topic has been viewed 3540 times and has 29 replies Next Thread
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Re: Get your Fire Fox 1.0.2 Security Update Here

Firefox 1.0.2 and Thunderbird 1.0.2 are available here: http://www.mozilla.org/
The list of bug fixes for 23 March 2005 is here: http://www.mozilla.org/projects/security/known-vulnerabilities.html#Firefox

Note that Firefox 1.0.1 includes 17 bug fixes. 1.0.2 includes 3 bug fixes.

[I upgraded my Firefox on 23 March 2005, Billy Bob]
Lawrence

Mozilla is still better without any updates blushing I beg your pardon Seamonkey.!!
----------------------------------------
[Edit 2 times, last edit by Former Member at Mar 28, 2005 10:34:01 AM]
[Mar 28, 2005 10:28:13 AM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
rose Get your Fire Fox 1.0.2 Security Update Here

Firefox 1.0.2 and Thunderbird 1.0.2 are available here: http://www.mozilla.org/
The list of bug fixes for 23 March 2005 is here: http://www.mozilla.org/projects/security/known-vulnerabilities.html#Firefox

Note that Firefox 1.0.1 includes 17 bug fixes. 1.0.2 includes 3 bug fixes.

[I upgraded my Firefox on 23 March 2005, Billy Bob]
-Lawrence

Mozilla is still better without any updates blushing I beg your pardon Seamonkey.!! -marysduby


laughing Seamonkey!! laughing
Good One LOL
[Mar 28, 2005 7:26:10 PM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
cool Re: Get your Fire Fox 1.0.2 Security Update Here

People with broadband connections have more options. Here are 2 interesting URLS.

Firefox on Steroids (tweaks for Firefox using broadband): http://www.ipkonfig.com/cms/index.php?option=...&id=165&Itemid=29

Community Edition builds specialized for MMX, SSE and SSE2 CPUs for Mozilla Suite, Firefox & Thunderbird: http://www.moox.ws/tech/mozilla/

Enjoy,
Lawrence
[Mar 30, 2005 3:01:00 AM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
applause Re: Get your Fire Fox 1.0.2 Security Update Here

People with broadband connections have more options. Here are 2 interesting URLS.

Firefox on Steroids (tweaks for Firefox using broadband): http://www.ipkonfig.com/cms/index.php?option=...&id=165&Itemid=29

Community Edition builds specialized for MMX, SSE and SSE2 CPUs for Mozilla Suite, Firefox & Thunderbird: http://www.moox.ws/tech/mozilla/

Enjoy,
Lawrence

Thank you; Lawrence How did you find this site?
[Mar 30, 2005 11:23:37 AM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Re: Get your Fire Fox 1.0.3 Security Update Here

Get the 15 April 2005 Firefox 1.0.3 update: http://www.mozilla.org/
The Register describes the security fixes: http://www.theregister.co.uk/2005/04/19/firefox_security_update/
[Apr 19, 2005 4:05:24 PM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
biggrin Re: Get your Fire Fox 1.0.3 Security Update Here

I used the Firefox 1.0.3 update provided by mycrofth.

Then I made the changes suggested in "Firefox on Steroids (tweaks for Firefox using broadband)" provided by L.H.

The browser is much faster. Thanks, guys.
[Apr 19, 2005 6:18:00 PM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Critical Flaw Found in Firefox

Critical Flaw Found in Firefox

Exploit code is already circulating online, security experts warn.

Matthew Broersma, Techworld.com - Monday, May 09, 2005

Firefox has unpatched "extremely critical" security holes and exploit code is already circulating on the Net, security researchers have warned.

The two unpatched flaws in the Mozilla browser could allow an attacker to take control of your system.

A patch is expected shortly, but in the meantime users can protect themselves by switching off JavaScript. In addition, the Mozilla Foundation has now made the flaws effectively impossible to exploit by changes to the server-side download mechanism on the update.mozilla.org and addons.mozilla.org sites, according to security experts.

The flaws were confidentially reported to the Foundation on May 2, but by Saturday details had been leaked and were reported by several security organizations, including the French Security Incident Response Team (FrSIRT). Danish security firm Secunia marked the exploit as "extremely critical", its most serious rating, the first time it has given a Firefox flaw this rating.

In recent months Firefox has gained significant market share from Microsoft's Internet Explorer, partly because it is considered less vulnerable to attacks. However, industry observers have long warned that the browser is more secure partly because of its relatively small user base. As Firefox's profile grows, attackers will increasingly target the browser.

Two Vulnerabilities Found
The exploit, discovered by Paul of Greyhats Security Group and Michael "mikx" Krax, makes use of two separate vulnerabilities. An attacker could create a malicious page using frames and a JavaScript history flaw to make software installations appear to be coming from a "trusted" site. By default, Firefox allows software installations from update.mozilla.org and addons.mozilla.org, but users can add their own sites to this whitelist.

The second part of the exploit triggers software installation using an input verification bug in the "IconURL" parameter in the install mechanism. The effect is that a user could click on an icon and trigger the execution of malicious JavaScript code. Because the code is executed from the browser's user interface, it has the same privileges as the user running Firefox, according to researchers.

Mozilla Foundation said it has protected most users from the exploit by altering the software installation mechanism on its two whitelisted sites. However, users may be vulnerable if they have added other sites to the whitelist, it warned.

"We believe this means that users who have not added any additional sites to their software installation whitelist are no longer at risk," Mozilla Foundation said in a statement published on Mozillazine.org.
[May 9, 2005 9:13:34 PM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Re: Critical Flaw Found in Firefox

I don't know about anyone else, but when I turned off Java Script I could not even run Norton Anti-virus.

I guess I will have to enable it only periodically until the patches are available. crying
[May 9, 2005 11:25:19 PM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Re: Critical Flaw Found in Firefox

Mozillazine discusses the javascript security problem at http://www.mozillazine.org/
I experimented with turning javascript off, but I could not reach my email. Another possibility might be to turn off downloads or use another browser. Anyway, remember that the Hitchhiker's Guide tells us: Don't panic.
[May 10, 2005 9:33:11 AM]   Link   Report threatening or abusive post: please login first  Go to top 
Former Member
Cruncher
Joined: May 22, 2018
Post Count: 0
Status: Offline
Reply to this Post  Reply with Quote 
Re: Firefox 1.0.4 released 12 May 2005

Here's what's new in Firefox 1.0.4: http://www.mozilla.org/
• Several security fixes.
• Fix to DHTML errors encountered at some web sites. For web developers, learn more.
The list of security fixes is at http://www.mozilla.org/projects/security/known-vulnerabilities.html

This seems to be a rush job. It did not retain my Home URL, but changed it to Firefox home. So I changed it back. All my old options and bookmarks seem to be the same though. It left an icon for Firefox Setup 1.0.4.exe on my desktop. I am suspiciously leaving it alone. Otherwise, no problems. I clicked accept when my spyware program warned me it was installing, rebooted after installation, and clicked accept when my firewall warned me a new program was trying to access the Internet when I first used it. And looking at my Start - Settings - Control Panel - Add/Remove Programs I see that Firefox 1.0.4 is the only Firefox listed. The old versions have all disappeared.

mycrofth
----------------------------------------
[Edit 1 times, last edit by Former Member at May 12, 2005 9:22:33 PM]
[May 12, 2005 11:02:41 AM]   Link   Report threatening or abusive post: please login first  Go to top 
Posts: 30   Pages: 3   [ Previous Page | 1 2 3 | Next Page ]
[ Jump to Last Post ]
Post new Thread