MozillaFirefoxMozillaFirefox: Update to 2.0.0.16MozillaFirefox: Update auf 2.0.0.16MozillaFirefox was updated to version 2.0.0.16, which fixes
various bugs and following security issues:
MFSA 2008-34 CVE-2008-2785: An anonymous researcher, via
TippingPoint's Zero Day Initiative program, reported a
vulnerability in Mozilla CSS reference counting code. The
vulnerability was caused by an insufficiently sized
variable being used as a reference counter for CSS objects.
By creating a very large number of references to a common
CSS object, this counter could be overflowed which could
cause a crash when the browser attempts to free the CSS
object while still in use. An attacker could use this crash
to run arbitrary code on the victim's computer.
MFSA 2008-35 CVE-2008-2933: Security researcher Billy Rios
reported that if Firefox is not already running, passing it
a command-line URI with pipe symbols will open multiple
tabs. This URI splitting could be used to launch privileged
chrome: URIs from the command-line, a partial bypass of the
fix for MFSA 2005-53 which blocks external applications
from loading such URIs. This vulnerability could also be
used by an attacker to launch a file: URI from the command
line opening a malicious local file which could exfiltrate
data from the local filesystem. Combined with a
vulnerability which allows an attacker to inject code into
a chrome document, the above issue could be used to run
arbitrary code on a victim's computer. Such a chrome
injection vulnerability was reported by Mozilla developers
Ben Turner and Dan Veditz who showed that a XUL based SSL
error page was not properly sanitizing inputs and could be
used to run arbitrary code with chrome privileges.
MozillaFirefox wurde auf Version 2.0.0.16 gebracht, die
mehrere Fehler und folgende Sicherheitsprobleme behebt:
MFSA 2008-34 CVE-2008-2785: An anonymous researcher, via
TippingPoint's Zero Day Initiative program, reported a
vulnerability in Mozilla CSS reference counting code. The
vulnerability was caused by an insufficiently sized
variable being used as a reference counter for CSS objects.
By creating a very large number of references to a common
CSS object, this counter could be overflowed which could
cause a crash when the browser attempts to free the CSS
object while still in use. An attacker could use this crash
to run arbitrary code on the victim's computer.
MFSA 2008-35 CVE-2008-2933: Security researcher Billy Rios
reported that if Firefox is not already running, passing it
a command-line URI with pipe symbols will open multiple
tabs. This URI splitting could be used to launch privileged
chrome: URIs from the command-line, a partial bypass of the
fix for MFSA 2005-53 which blocks external applications
from loading such URIs. This vulnerability could also be
used by an attacker to launch a file: URI from the command
line opening a malicious local file which could exfiltrate
data from the local filesystem. Combined with a
vulnerability which allows an attacker to inject code into
a chrome document, the above issue could be used to run
arbitrary code on a victim's computer. Such a chrome
injection vulnerability was reported by Mozilla developers
Ben Turner and Dan Veditz who showed that a XUL based SSL
error page was not properly sanitizing inputs and could be
used to run arbitrary code with chrome privileges.
securityMozillaFirefoxi586fdcf9d9821375e0bdbf41da5dddbd5917b2405405ec472d1cb004aa5b5d6bf26dc67ac13eada5b3d61d15e0c31e64520c09e555dbd5edc0303bd456bMozillaFirefoxppce70080f72bce11dab9605af9e52fdaec4df9cc1548c5c6e5235d5fff6663ca5e091e63cd9a9cd77116237f28b0500a6b9fb4b92359ca391712eed41cMozillaFirefoxx86_64f98353cfcec14ae1e80609375a10b890ad2eed347e119b6f0c6176cdecb5ca87e043662cecfa14a92a0a87db413d287512a5a69046580d71bd493e81MozillaFirefox-translationsi586aa0c867ee6d4ffb8c681d9985ef53f5f480a215d5f191b664208100b9b06e0ab3702ed00f5df84cd901b076b748509e3bdd5993a656b19b8c7e9cd53MozillaFirefox-translationsppce1865e6ab6b0b51d67a2d8fa81763c01c2a13cdabad3020c7677514d8fafb1c853a3ddf8b6511d946b79e836c3bda1c7ffc0db8fc6820ffc198a1f7eMozillaFirefox-translationsx86_64eb2d00381d274369787662e99651d537fe6f5da17def76c2f5fed87d4aecbd3cba7eeface3784a7b36dc93004d88260dcdad43b5da10b7042ba17130