[thelist] Firefox 1.0.3 Released

Burhan Khalid thelist at meidomus.com
Sun Apr 17 01:38:21 CDT 2005


Hello:

   This is probably old news, but didn't see it mentioned on the list.

   Firefox 1.0.3 was released recently with the following security fixes:

   MFSA 2005-33  Javascript "lambda" replace exposes memory contents
   MFSA 2005-34 java script: PLUGINSPAGE code execution
   MFSA 2005-35 Showing blocked java script: popup uses wrong privilege 
context
   MFSA 2005-36 Cross-site scripting through global scope pollution
   MFSA 2005-37 Code execution through java script: favicons
   MFSA 2005-38 Search plugin cross-site scripting
   MFSA 2005-39 Arbitrary code execution from Firefox sidebar panel II
   MFSA 2005-40 Missing Install object instance checks
   MFSA 2005-41 Privilege escalation via DOM property overrides


Cheers,
Burhan



More information about the thelist mailing list