Monday, February 18, 2008

Latest Firefox with fix for Cross Site Scripting (XSS)

Cross Site Scripting was one of the major security threat faced by internet users. This security vulnerability may be exploited to allow code injection by malicious web users into the web pages viewed by other users.

Latest Firefox
Now Firefox users can stay safe as this vulnerability has been fixed in the latest release of the Firefox web browser. There are couple of other security fixes that are made in the latest release, Firefox 2.0.0.12.

  • Web forgery overwrite with div overlay
  • URL token stealing via style-sheet redirect
  • Mishandling of locally-saved plain text files
  • File action dialog tampering
  • Web browsing history and forward navigation stealing
  • Directory traversal via chrome: URI
  • Stored password corruption
  • Privilege escalation, XSS, Remote Code Execution
  • Multiple file input focus stealing vulnerabilities
  • Crashes with evidence of memory corruption
Its another reason to switch to Firefox, for non Firefox users and time to update your web browser for old Firefox users.

0 comments:

Design by Free blogger template