 | Firefox Update Patches Quicktime Flaw »blog.wired.com/monkeybites/2007/···iouspost
Mozilla has pushed out a new incremental upgrade to Firefox which addresses a serious vulnerability in the way the browser works with QuickTime media files.
So far the flaw is only reproducible on Windows machines and it's worth noting that the popular NoScript add-on provides protection against this and other, similar attacks.
The flaw is technically in Quicktime and affects the Internet Explorer as well, though Petkov says on his blog that IE's security policies make the flaw less critical.
You can grab the new Firefox 2.0.0.7 (which contains this patch and nothing else new) from Mozilla. You can get the new updated Firefox here if you don't do automatic updates: »getfirefox.com -- -- Internet News My BLOG My Web Page |