Reply to topic  [ 16 posts ]  Go to page 1, 2  Next
Germany warns surfers against Firefox 
Author Message
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 7:10 pm
Posts: 5490
Location: just behind you!
Reply with quote
clicky

Quote:
German's official cyber-security response team is advising surfers not to use Firefox pending the release of a patch to defend against a critical unpatched vulnerability.

_________________
johnwbfc wrote:
I care not which way round it is as long as at some point some sort of semi-naked wrestling is involved.

Amnesia10 wrote:
Yes but the opportunity to legally kill someone with a giant dildo does not happen every day.

Finally joined Flickr


Tue Mar 23, 2010 11:59 am
Profile
What's a life?
User avatar

Joined: Fri Apr 24, 2009 10:21 am
Posts: 12700
Location: The Right Side of the Pennines (metaphorically & geographically)
Reply with quote
The patch has already been released, I updated to 3.6.2 this morning.

_________________
pcernie wrote:
'I'm going to snort this off your arse - for the benefit of government statistics, of course.'


Tue Mar 23, 2010 12:05 pm
Profile WWW
Spends far too much time on here
User avatar

Joined: Thu Apr 23, 2009 6:44 pm
Posts: 4141
Location: Exeter
Reply with quote
l3v1ck wrote:
The patch has already been released, I updated to 3.6.2 this morning.


Ditto.

_________________
"The woman is a riddle inside a mystery wrapped in an enigma I've had sex with."


Tue Mar 23, 2010 12:10 pm
Profile WWW
Legend

Joined: Sun Apr 26, 2009 12:30 pm
Posts: 45931
Location: Belfast
Reply with quote
jonlumb wrote:
l3v1ck wrote:
The patch has already been released, I updated to 3.6.2 this morning.


Ditto.


As a result of this thread I've just noticed that I'm auto-downloading it :D

_________________
Plain English advice on everything money, purchase and service related:

http://www.moneysavingexpert.com/


Tue Mar 23, 2010 12:36 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 7:10 pm
Posts: 5490
Location: just behind you!
Reply with quote
pcernie wrote:
jonlumb wrote:
l3v1ck wrote:
The patch has already been released, I updated to 3.6.2 this morning.


Ditto.


As a result of this thread I've just noticed that I'm auto-downloading it :D


My work is done here :D

_________________
johnwbfc wrote:
I care not which way round it is as long as at some point some sort of semi-naked wrestling is involved.

Amnesia10 wrote:
Yes but the opportunity to legally kill someone with a giant dildo does not happen every day.

Finally joined Flickr


Tue Mar 23, 2010 1:14 pm
Profile
What's a life?
User avatar

Joined: Thu Apr 23, 2009 8:25 pm
Posts: 10691
Location: Bramsche
Reply with quote
Yep, they seem to launch these alerts every couple of weeks, the last 2 were for Opera and Flash...

_________________
"Do you know what this is? Hmm? No, I can see you do not. You have that vacant look in your eyes, which says hold my head to your ear, you will hear the sea!" - Londo Molari

Executive Producer No Agenda Show 246


Tue Mar 23, 2010 4:58 pm
Profile ICQ
Legend

Joined: Sun Apr 26, 2009 12:30 pm
Posts: 45931
Location: Belfast
Reply with quote
bobbdobbs wrote:
pcernie wrote:
As a result of this thread I've just noticed that I'm auto-downloading it :D


My work is done here :D


And I'm now updating the desktop (manually), before getting to the new netbook at some point :D

_________________
Plain English advice on everything money, purchase and service related:

http://www.moneysavingexpert.com/


Tue Mar 23, 2010 9:52 pm
Profile
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
big_D wrote:
Yep, they seem to launch these alerts every couple of weeks, the last 2 were for Opera and Flash...

I can understand Flash being on that list, though really everyone should apply security patches as fast as possible and use the latest browser as it will be more secure than the previous incarnation.

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Tue Mar 23, 2010 11:04 pm
Profile
What's a life?
User avatar

Joined: Thu Apr 23, 2009 8:25 pm
Posts: 10691
Location: Bramsche
Reply with quote
Amnesia10 wrote:
big_D wrote:
Yep, they seem to launch these alerts every couple of weeks, the last 2 were for Opera and Flash...

I can understand Flash being on that list, though really everyone should apply security patches as fast as possible and use the latest browser as it will be more secure than the previous incarnation.

Opera 10.5 was released (on the day of the Browser Ballot screen going live in Windows) with a 0-day flaw.

If you open a web page, it could cause a buffer overflow. There was a problem with the 64-bit file size meta tag passed to the browser. If the MSB of the 32-bit border was set (negative 32-bit number, for a 32-bit signed value), the browsers buffer would overflow and become corrupt and if you used a specially crafted page, image or general file, it could lead to code execution situation.

As the web page itself, any images, any embedded objects and any files to be downloaded use this meta tag, it is potentially disastrous.

_________________
"Do you know what this is? Hmm? No, I can see you do not. You have that vacant look in your eyes, which says hold my head to your ear, you will hear the sea!" - Londo Molari

Executive Producer No Agenda Show 246


Wed Mar 24, 2010 6:41 am
Profile ICQ
What's a life?
User avatar

Joined: Fri Apr 24, 2009 10:21 am
Posts: 12700
Location: The Right Side of the Pennines (metaphorically & geographically)
Reply with quote
I think most risks I read about are to do with java script, that's why I use NoScript.

_________________
pcernie wrote:
'I'm going to snort this off your arse - for the benefit of government statistics, of course.'


Wed Mar 24, 2010 8:14 am
Profile WWW
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
l3v1ck wrote:
I think most risks I read about are to do with java script, that's why I use NoScript.

The problem is that many pages use java or javascript. I have found that click to flash is so effective that I am considering disabling Glimmerblocker, an ad blocker.

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Wed Mar 24, 2010 9:26 am
Profile
What's a life?
User avatar

Joined: Fri Apr 24, 2009 10:21 am
Posts: 12700
Location: The Right Side of the Pennines (metaphorically & geographically)
Reply with quote
Amnesia10 wrote:
l3v1ck wrote:
I think most risks I read about are to do with java script, that's why I use NoScript.

The problem is that many pages use java or javascript.
Which is why I allow them on a site by site basis from sites I trust.

_________________
pcernie wrote:
'I'm going to snort this off your arse - for the benefit of government statistics, of course.'


Wed Mar 24, 2010 10:27 am
Profile WWW
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
l3v1ck wrote:
Amnesia10 wrote:
l3v1ck wrote:
I think most risks I read about are to do with java script, that's why I use NoScript.

The problem is that many pages use java or javascript.
Which is why I allow them on a site by site basis from sites I trust.

But as a mac user I do not know of a program that allows me to whitelist and blacklist scripts.

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Wed Mar 24, 2010 2:44 pm
Profile
Spends far too much time on here
User avatar

Joined: Thu Apr 23, 2009 6:44 pm
Posts: 4141
Location: Exeter
Reply with quote
Amnesia10 wrote:
But as a mac user I do not know of a program that allows me to whitelist and blacklist scripts.


I use Firefox on a Mac with Noscript installed...

_________________
"The woman is a riddle inside a mystery wrapped in an enigma I've had sex with."


Wed Mar 24, 2010 2:46 pm
Profile WWW
What's a life?
User avatar

Joined: Thu Apr 23, 2009 8:25 pm
Posts: 10691
Location: Bramsche
Reply with quote
Amnesia10 wrote:
l3v1ck wrote:
Amnesia10 wrote:
The problem is that many pages use java or javascript.
Which is why I allow them on a site by site basis from sites I trust.

But as a mac user I do not know of a program that allows me to whitelist and blacklist scripts.

I use NoScript on Firefox on Windows, OS X and Linux...

_________________
"Do you know what this is? Hmm? No, I can see you do not. You have that vacant look in your eyes, which says hold my head to your ear, you will hear the sea!" - Londo Molari

Executive Producer No Agenda Show 246


Wed Mar 24, 2010 2:54 pm
Profile ICQ
Display posts from previous:  Sort by  
Reply to topic   [ 16 posts ]  Go to page 1, 2  Next

Who is online

Users browsing this forum: No registered users and 6 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group
Designed by ST Software.