Exploding: the firefox3 first crack

June 17, 2008 is the Firefox 3 official issue dates, 24 hour under load capacity has surpassed 8,000,000, however after official extrusion less than 5 hours, TippingPoint digital immunity laboratory (DVLabs) then reported Forefox 3 serious security cracks.

DVLabs said that this crack is the researcher discovered that DVLabs already purchased to this researcher defray expenses this discovers and makes the confirmation, at the same time DVLabs reported immediately this crack the Firefox security team. Although DVLabs before Firefox promotes the security patch will not announce the crack detail, but declared, this simultaneously will affect the Firefox 2 security cracks to carry out some malicious code under the user participation. The Mozilla name can promote the related patch.

2008年6月17日是 Firefox 3 正式发布日期,24小时内的下载量已超过800万,然而就在正式推出后不到5个小时,TippingPoint 数字免疫实验室(DVLabs) 便报道了 Forefox 3 的一个严重的安全漏洞。

DVLabs 称,该漏洞系研究者发现,DVLabs 已经向该研究者支付费用购买这一发现并做出验证,DVLabs 同时立即将该漏洞报告了 Firefox 安全团队。虽然 DVLabs 在 Firefox 推出安全补丁之前不会公布漏洞细节,但声称,这个同时会影响 Firefox 2 的安全漏洞会在用户参与下执行一些恶意代码。Mozilla 称会推出相关补丁。

Leave a Reply