<?xml version="1.0" encoding="UTF-8"?> <rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:wfw="http://wellformedweb.org/CommentAPI/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
> <channel><title>Agriya &#187; security flaw</title> <atom:link href="http://blogs.agriya.com/tag/security-flaw/feed" rel="self" type="application/rss+xml" /><link>http://blogs.agriya.com</link> <description>Something's Cooking At Agriya...</description> <lastBuildDate>Tue, 31 Jan 2012 11:25:09 +0000</lastBuildDate> <language>en</language> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.2.1</generator> <item><title>Upgrade to Firefox 3.5.1 to trounce critical JavaScript glitch in Firefox 3.5</title><link>http://blogs.agriya.com/upgrade-to-firefox-351-to-trounce-critical-javascript-glitch-in-firefox-35</link> <comments>http://blogs.agriya.com/upgrade-to-firefox-351-to-trounce-critical-javascript-glitch-in-firefox-35#comments</comments> <pubDate>Tue, 21 Jul 2009 09:04:08 +0000</pubDate> <dc:creator>Kabila</dc:creator> <category><![CDATA[Computer Security]]></category> <category><![CDATA[Firefox 3.5]]></category> <category><![CDATA[Firefox 3.5.1]]></category> <category><![CDATA[Javascript vulnerability]]></category> <category><![CDATA[JIT Javascript compiler]]></category> <category><![CDATA[security flaw]]></category> <guid
isPermaLink="false">http://blogs.agriya.com/?p=620</guid> <description><![CDATA[Mozilla released Firefox 3.5 on 30th June 2009, and claimed that it contains more improved features than the previous version, supporting new web technologies, improving performance and ease of use. On July 9, Firefox user &#8220;zbyte&#8221; submitted an error report to Mozilla’s bug tracking system. According to the report, the browser crashes when text is [...]]]></description> <content:encoded><![CDATA[<p><img
class="alignleft size-full wp-image-621" src="http://blogs.agriya.com/wp-content/uploads/2009/07/firefox.jpg" alt="firefox" width="190" height="240" />Mozilla released Firefox 3.5 on 30th June 2009, and claimed that it contains more improved features than the previous version, supporting new web technologies, improving performance and ease of use. On July 9, Firefox user &#8220;zbyte&#8221; submitted an error report to Mozilla’s bug tracking system. According to the report, the browser crashes when text is typed into an input box in the site apport.ru instead of fetching the search result.</p><p>It is found that the security flaw lies in the Firefox’s Just-In-Time (JIT) Javascript compiler.  Due to the vulnerability, the JIT compiler could become corrupt when a user lands on a tainted web page and paves way for an attacker to insert a malicious code on the user’s computer.</p><p>Initially, Firefox advised its users to turn off Javascript or use Noscript add-on. Another simple solution was to set “javascript.options.jit.content” to false in the configuration page which can be opened by typing about:config in the address bar.</p><p>Finally, Mozilla has come up with a permanent solution by releasing a new version of Firefox 3.5.1 which fixes the critical security vulnerability. Just upgrade your browser to the newer version to safeguard it from Javascript vulnerability. Don’t forget to enable your Javascript after updating your browser to the 3.5.1 version. Another issue that was making Firefox take a long time to load  some Windows systems was fixed in the new version.</p><div
id="crp_related"><h3>Related Posts:</h3><ul><li><a
href="http://blogs.agriya.com/the-competition-keeps-firefox-on-its-toes" rel="bookmark" class="crp_title">The Competition Keeps Firefox on its Toes</a></li><li><a
href="http://blogs.agriya.com/the-firefox-40-mockup-reminds-google-chrome" rel="bookmark" class="crp_title">The Firefox 4.0 mockup reminds Google chrome</a></li><li><a
href="http://blogs.agriya.com/a-cross-browser-twitter-extension-for-firefox-with-a-cheerful-name" rel="bookmark" class="crp_title">A Cross Browser Twitter Extension for Firefox with a Cheerful Name</a></li><li><a
href="http://blogs.agriya.com/chrome-extensions-are-finally-here" rel="bookmark" class="crp_title">Chrome Extensions are Finally Here</a></li><li><a
href="http://blogs.agriya.com/firefox-fluxes-wolfram-alpha-with-the-search-engine-giant-google" rel="bookmark" class="crp_title">Firefox fluxes Wolfram Alpha with the search engine giant Google</a></li></ul></div>]]></content:encoded> <wfw:commentRss>http://blogs.agriya.com/upgrade-to-firefox-351-to-trounce-critical-javascript-glitch-in-firefox-35/feed</wfw:commentRss> <slash:comments>0</slash:comments> </item> </channel> </rss>
