Syndicate content
Updated: 9 hours 1 min ago

Secunia Advisory SA38608

Tue, 2010-02-23 00:30
Mozilla is aware of the claim of a zero-day in Firefox as posted here: http://secunia.com/advisories/38608/.  We cannot confirm the report as we have received no details regarding the reported vulnerability, such as a proof-of-concept or steps to reproduce.  We’ve attempted to contact the researcher who discovered the issue but have not received a response. Read more
Categories: Security

Fixing security holes without introducing new bugs

Wed, 2010-02-10 23:43

When fixing any bug, there is a risk of introducing new bugs, which we call regressions. Regressions caused by security fixes can be especially problematic because shipping a buggy security update can erode user trust for future updates.

Read more
Categories: Security

Security Issues With Two Experimental Add-Ons

Fri, 2010-02-05 19:18

Important Note: One of the malware results has been verified to be a false positive.  Further details are available here: http://blog.mozilla.com/addons/2010/02/09/update-on-the-amo-security-issue/

Original blog entry follows below.

Read more
Categories: Security