• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

Firefox 3 Vulnerability Found

HardOCP News

[H] News
Joined
Dec 31, 1969
Messages
0
Well, that didn’t take long. Five hours to be exact.

Since Mozilla is still working on a fix, the researchers won't share details about the problem. Tipping Point ranked the severity of the vulnerability as high, but said that users would have to click on a link in an e-mail or visit a malicious Web page before being affected. The issue affects users of Firefox 3.0 as well as Firefox 2.0.
 
If it affects 2.0 too, then at least it's not like 3.0 made you more vulnerable I guess?
We didn't expect FF3 to be flawless but 5 hrs is pretty quick.
 
Better sooner then later...

I disagree, the fact that it was found so soon makes me think that it was fairly easy to find.... What other vulnerabilites will turn up in the near future I wonder? :confused:

I think I'll wait a bit longer before I go from 2 to 3.
 
I disagree, the fact that it was found so soon makes me think that it was fairly easy to find.... What other vulnerabilites will turn up in the near future I wonder? :confused:

I think I'll wait a bit longer before I go from 2 to 3.

It's been there for years if it was in 2 as well, not hard to find if its been there all along
 
That's naive. They didn't say what the vulnerability was. Nothing can be 100% tamper-proof. Developers can't think of every possible entry point.

It might've required you to visit a questionable website. Who knows. If you don't go to shady sites, you should be just fine.
 
I disagree, the fact that it was found so soon makes me think that it was fairly easy to find.... What other vulnerabilites will turn up in the near future I wonder? :confused:

I think I'll wait a bit longer before I go from 2 to 3.

Why? The discovered vulnerability affects Firefox 2.x as well.
 
Apparantly this jerk knew about this for a long time and waited for the release so he could sell the exploit.

Some people you just want to frackin' send to a deserted island with nothing but fish to eat, imported Mexican river water and cacti for toilet paper.
 
I was just wondering why if it was a vulnerability on Windows itself or in IE, people will gladly share the information regarding the exploit, luckily this researcher decided to keep it under raps instead, which I think should be a norm for all exploits found on all softwares & platforms
 
obviously the guy knew about it before if it affects FF2 as well as 3, waited till after ff3 was released so he can get the story in the spotlight..
 
yep, it is kind of funny how some people try to gain fame from.

I guess he was skilled enough to discovered how to exploit firefox in a certain way but he must have knew about it in firefox 2 and was just waiting for firefox 3 to be released to announcing it for headlines like this.

There are exploits that get discovered in firefox all the time that is why firefox updates a lot.
Main thing making it eaiser for people to find the exploits is because the source code is open sourced and easy to get a copy of the source.

Microsoft ie source code on the other hand is not as accessable for the public so there most likely be tons of bugs for it too.
 
There are easier ways to find vulnerabilities in software than reading code. Fixing them, however, requires access to the code.

Open source is theoretically better for removing vulnerabilities. No?
 
Haha, I happy to see this. I've favored using Explorer over Firefox for quite some time now and unless something big happens, I'll probably keep using it. Firefox has some nice appeals, but it doesn't really want to make me switch permanently.
 
Something I found last night that makes FireFox 3.0 really appealling...
When increasing the text size (CTRL + forward mouse wheel), it not only increases the text size but renders the whole screen larger, including images.
Fantastic !!!
 
Does this really count as something they "found", if it already existed in 2.0?
 
Do we have to wait until next month's patch Tuesday for a fix? :p
 
Back
Top