• Jan : 19 : 2012 - The guy is simply no bones!
  • Jan : 19 : 2012 - Grandfather – the dandy at the beach
  • Jan : 17 : 2012 - Mega party
  • Dec : 1 : 2011 - Grandmother’s Awesome Tips
  • Nov : 23 : 2011 - Blue Lagoon

The developers of the Mozilla Foundation just released Firefox 3.5.2 to close two critical rated security vulnerabilities. One flaw in the web browser could be abused to spoof certificates for web servers. This could happen as the browser didn’t parse the domain name in the certificate correctly and would stop parsing at a NULL sign. A CA would issue a certificate for <domainname><0×00><mydomainname> and the certificate would be valid for <domainname>, thus allowing for a hidden man-in-the-middle attack.

images Mozilla Foundation fixes 2 vulnerabilities in Firefox

The second vulnerability could get abused to inject malicious code – for example a Trojan – into the victim’s computer by putting certain regular expressions into a certificate for SSL communication. This happened due to code that was meant to provide backwards compatibility to the non-standard regular expression syntax used by Netscape clients and servers. Now Firefox uses the current industry-standard wild-card syntax.

Update your Firefox as soon as possible by clicking on the Help menu and choosing “Search for Updates”. As other Mozilla products like Thunderbird and SeaMonkey are vulnerable too, apply updates ASAP as well when they get available.

Categories: Windows News

Leave a Reply


Featured Video

The guy is simply...

Posted on Jan - 19 - 2012

0 Comment

Grandfather – the dandy...

Posted on Jan - 19 - 2012

2 Comments

Mega party

Posted on Jan - 17 - 2012

1 Comment

Grandmother’s Awesome Tips

Posted on Dec - 1 - 2011

2 Comments

Blue Lagoon

Posted on Nov - 23 - 2011

2 Comments

Girl of the day...

Posted on Jun - 27 - 2010

1 Comment

Silhouettes

Posted on Aug - 11 - 2010

0 Comment

Park like an idiot

Posted on Mar - 15 - 2010

1 Comment

Carnivorous flowers

Posted on Feb - 4 - 2011

0 Comment

Sexy self-portrait

Posted on Mar - 15 - 2010

0 Comment

Twitter updates

RSS not configured

Sponsors