ITSS-Advisory : MEDIUM : Mozilla : Firefox : Various Issues
THREAT LEVEL
============
Medium.
INFORMATION
===========
On 03 Aug 2009, Mozilla released Firefox 3.5.2 and Firefox 3.0.13.
These new versions fix a number of vulnerabilities, impacts include
Location bar spoofing, SSL indicator spoofing and arbitrary code
execution.
More information is available at:
- http://www.mozilla.org/security/known-vulnerabilities/firefox30.html
- http://www.mozilla.org/security/known-vulnerabilities/firefox35.html
AFFECTED PLATFORMS
==================
Computers of various operating systems running Firefox:
- versions prior to 3.5.2
- versions prior to 3.0.13
ACTION
======
Administrators of affected computers are advised to review the bulletins,
test and apply relevant updates.
Links to download Firefox 3.5.2 are available at:
- http://www.mozilla.com/
Links to download Firefox 3.0.13 are available at:
- http://www.mozilla.com/en-US/firefox/all-older.html
|