LinuxQuestions.org
Support LQ: Use code LQ3 and save $3 on Domain Registration
Go Back   LinuxQuestions.org > Forums > LinuxQuestions.org > Linux - News > Syndicated Linux News
User Name
Password
Syndicated Linux News This forum is for the discussion of Syndicated Linux News stories.

Notices

Reply
 
Search this Thread
Old 11-19-2007, 11:40 PM   #1
LXer
LXer NewsBot
 
Registered: Dec 2005
Posts: 74,126

Rep: Reputation: 82
LXer: Mozilla to fix 9-month-old JAR URL handling bug


Published at LXer:

The XSS flaw, found in the Firefox JAR URL handler, is a problem child endemic to just about anything Web 2.0. Mozilla is working to fix a flaw in the JAR URL handler that could leave Firefox users open to cross-site scripting attacks that are impossible for anti-virus programs to prevent. It turns out that the vulnerability, first reported in February by Jesse Ruderman, is far more serious than first realized. In fact, it turns out to be endemic to "almost everything that smells like Web 2.0," security researcher Petko D. Petkov, also known as "pdp" of GNUCitizen, wrote in a Nov. 7 posting.

Read More...
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: DistroWatch Weekly: Security and bug fix infrastructures in distributions, from LXer Syndicated Linux News 0 09-24-2007 08:30 AM
LXer: Mozilla Firefox 2.0.0.5 Released with Fix for firefoxurl:// Exploit LXer Syndicated Linux News 0 07-18-2007 10:16 PM
LXer: Group bug: Flaws flagged in IE, Mozilla, Safari LXer Syndicated Linux News 0 04-27-2006 01:24 AM
LXer: Mozilla to fix 'minor' Firefox bug LXer Syndicated Linux News 0 12-13-2005 01:46 PM
x86 BUG handling RajRed Programming 0 04-27-2005 12:24 PM


All times are GMT -5. The time now is 06:56 PM.

Main Menu
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: linuxquestions Google+: linuxquestions
Open Source Consulting | Domain Registration