Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
TRENDING TODAY
Home > News > Security > Security Blog

November 21st, 2012, 13:36 GMT · By

BLOG

Mozilla Addresses 6 Critical Vulnerabilities with the Release of Firefox 17

SHARE:

Adjust text size:


16 security holes addressed in Firefox 17 Enlarge picture - 16 security holes addressed in Firefox 17
A number of six critical-, nine high- and one moderate-impact vulnerabilities have been fixed by Mozilla with the release of Firefox 17.

The critical flaws, which can be leveraged by an attacker to run arbitrary code and install malicious software without any user interaction, refer to use-after-free, buffer overflow and memory corruption issues identified with the aid of Address Sanitizer.

Other critical security holes include a CSS and HTML injection issue through Style Inspector, miscellaneous memory safety hazards, a buffer overflow when rendering GIF images, and a crash when combining SVG text on path with CSS.

The high-impact vulnerabilities addressed in Firefox 17 were caused by the improper security filtering for cross-origin wrappers, installer DLL hijacking, the fact that the evalInSanbox location context was incorrectly applied, and a memory corruption issue in str_unescape.

Firefox 17 for Windows is available for download here
Firefox 17 for Mac is available for download here
Firefox 17 for Linux is available for download here
Firefox 17 for Android is available for download here

TELL US WHAT YOU THINK:

1,058 hits · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


Security Predictions for 2013 Provided from Three Different Angles

VUPEN Researchers Find Windows 8 Zero-Day, All Exploit Mitigations Bypassed (Updated)

One Billion Users Affected by Java Security Sandbox Bypass Vulnerability, Experts Say

SIM Toolkit Attacks Still Possible on Android 4.2, Researcher Finds – Video

Password Reset Zero-Day Reported to Skype Since October (Updated)

READER COMMENTS:



No user comments yet.
Be the first to express your opinion!
Copyright © 2001-2013 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM