On TechRepublic: Why Linux will triumph over Windows
BNET Business Network:
BNET
TechRepublic
ZDNet

By Joris Evers
Posted on ZDNet News: Apr 14, 2006 12:12:00 AM

Mozilla released an update to its Firefox Web browser Thursday that fixes several security flaws and, as expected, adds support for Macs with Intel processors.

The most serious bugs in Firefox could let an outsider commandeer a vulnerable computer, according to the Burning Edge, a Web site that tracks development of the open-source browser.

The vulnerabilities are fixed in version 1.5.0.2, which was released Thursday. It will be pushed out to users of Firefox 1.5 over the next two days, Mozilla, the company that oversees Firefox development, said on its Web site.

The update fixes seven vulnerabilities, Mozilla said on its Web site. Five of those are "critical," the company said. This means the flaw could be used to run malicious code and install software, requiring no user interaction beyond normal browsing, Mozilla said. Another flaw is considered to be "high" risk, which means it could be exploited to steal data. The final flaw is of "moderate risk," Mozilla said.

While Mozilla identifies seven flaws as being fixed in the new Firefox release, security monitoring company Secunia lists 21 bug fixes in the browser update. Secunia deems the issues "highly critical," one notch below its most serious ranking.

"We're identifying this as a critical release, and we're strongly recommending that everyone update as soon as possible," Mike Schroepfer, vice president of engineering at Mozilla, said in a statement. "This is one of the most stable releases we have ever delivered. It proactively addresses a wide range of security, performance and stability issues we have identified, using the very latest tools and techniques," he said.

Mozilla recommends that Firefox 1.0 users upgrade to this latest release of Firefox 1.5, it said on its Web site. The 1.5 version, released in November, includes an automated update mechanism to help people keep their systems up-to-date.

The Firefox update comes two days after Microsoft released a "critical" megapatch for the rival Internet Explorer browser, fixing 10 vulnerabilities.

In addition to security patches, Firefox includes some stability enhancements and, as expected, includes native support for Apple Computer's Macs with Intel processors. Apple released the first Macs with those chips in January, and Mozilla originally said it had scheduled a March release of Firefox for those machines.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 70 Talkback(s)
Burned Again
Having been burned by Norton back in 2003, you would have thought I learned a lesson. Never again!!!!! Death to Norton!!!!!... (Read the rest)
Posted by: ralphb@... Posted on: 04/18/06 You are currently: a Guest | | Terms of Use
awesome  Spicoli's Avenger | 04/13/06
Just so it doesn't crash as much  Spats30 | 04/14/06
nice stuff  sbj | 04/13/06
My Firefox just updated! (20:46 04/13/06)  Mr. Roboto | 04/13/06
It updated by itself?  Zogg | 04/13/06
It does  Linux User 147560 | 04/13/06
Yes indeedy  Stez | 04/14/06
it can  doh123 | 04/14/06
It will...  benrob | 04/13/06
Firefox update kills security bugs, adds Mac support  Loverock Davidson | 04/13/06
And kills Roboform too  rushnrockt | 04/13/06
Then update!  CavJJC | 04/14/06
And kills Roboform too  jresh0 | 04/14/06
Well, I appreciate the heads up.  mobrien_12@... | 04/13/06
Heads up... here's the changelog:  Tony Agudo | 04/13/06
There were 22 vulnerabilities in this update for Firefox  george_ou | 04/13/06
A question about the article you quote  Stoutner | 04/13/06
Typo Correction  Stoutner | 04/13/06
Learn to read  tombalablomba | 04/13/06
nice try George..  Spicoli's Avenger | 04/14/06
Ohhh wait on...what's the solution??  mdsmedia | 04/14/06
Unfair...  jasonp@... | 04/14/06
Depends  berck | 04/14/06
don't know if you caught this article or not George  Monkey_MCSE | 04/14/06
That was slick  DangDaCommonCentz | 04/14/06
Did the update myself  Shelendrea | 04/14/06
And it's still flaky  No_Ax_to_Grind | 04/14/06
Flaky how?  Shelendrea | 04/14/06
he leaves blanket statements for a reason  Monkey_MCSE | 04/14/06
true enough  Shelendrea | 04/14/06
Child, satsifying your curiousity is not my job.  No_Ax_to_Grind | 04/14/06
anytime old man...  Monkey_MCSE | 04/14/06
I see it was above your head.  No_Ax_to_Grind | 04/14/06
poor no ax..  Monkey_MCSE | 04/14/06
knocked straight the buck out!!  Spicoli's Avenger | 04/14/06
you're dyin for some trolling, eh Axey?  Spicoli's Avenger | 04/14/06
Yeff boy, grow up and stop hidding in your car trunk.  No_Ax_to_Grind | 04/14/06
Ain't hiding, I'm smoking a fat doob on yer front porch!  Spicoli's Avenger | 04/14/06
No Ax  Shelendrea | 04/14/06
thank you Shellmeister  Spicoli's Avenger | 04/14/06
If your happy with it, good on ya.  No_Ax_to_Grind | 04/14/06
Oooooo!!!!  Spicoli's Avenger | 04/14/06
i was wondering who would make a comment  Monkey_MCSE | 04/14/06
YUS!  Spicoli's Avenger | 04/14/06
*blush*  Shelendrea | 04/14/06
we only do it because we care shel  Monkey_MCSE | 04/14/06
it's OK my dear  Spicoli's Avenger | 04/14/06
I must have open mouth insert  Shelendrea | 04/14/06
open mouth, insert..  Spicoli's Avenger | 04/14/06
You just  Shelendrea | 04/14/06
nope!  Spicoli's Avenger | 04/14/06
You know  Shelendrea | 04/14/06
I'm..  Spicoli's Avenger | 04/14/06
You are  Shelendrea | 04/14/06
but other than that..  Spicoli's Avenger | 04/14/06
Wanna upgrade?  tic swayback | 04/14/06
hummmm....  not of this world | 04/15/06
Firefox is safe and NoScript makes it safer  jtameer | 04/14/06
IE has that also...  rapson | 04/14/06
Here's a comparison by the Whashington Post security blog  jtameer | 04/14/06
Get rid of the Google search bar!!! It is stupid  SouthernPride | 04/14/06
Huh?  mc_hambone | 04/14/06
why?  Spicoli's Avenger | 04/14/06
It's called personal preference [text]  BlazeEagle | 04/17/06
Getting rid of search bar is easy  chonhart | 04/16/06
Good for them and  michael_t | 04/15/06
Now if only HotJava would come of age  Boot_Agnostic | 04/16/06
Firefox fixes bugs, but Norton kills Firefox  ralphb@... | 04/17/06
Norton A/V = Bad  Sheeva | 04/18/06
Burned Again  ralphb@... | 04/18/06

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads

Meet Doc

  • Here to help you with your Document Management Needs
  • Doc is an enigma. Born to a Russian ballerina and a German electrical engineer, he grew up in various locations in the United States. He’s seen the insides of more brands, versions, and generations of printer and printer-related hardware than almost anyone.
  • To learn more about this mysterious figure check out his blog on ZDNet and his Workspace on TechRepublic. You’ll be glad you did.
  • Produced by
    ZDNet and
advertisement
Click Here