PDA

View Full Version : Mozilla becoming target? Everything?



mikmik
09-16-2004, 05:41 AM
Seems that reality has a way of catching up to us all to quick these days. Exactly two months ago we were discussing this, Time to Find an IE Alternative? (http://www.webproworld.com/viewtopic.php?t=24595), based on reports from CERT.

Since then, 12 vulnerabilities have been reported in Mozilla and FireFox, with two of them still unpatched, at Secunia. http://secunia.com/product/3256/

Below you will find a complete list of Patched/Unpatched Secunia Advisories, which affects Mozilla Firefox 0.x. If you are using this product, you should be aware of all the Secunia advisories affecting it, in order to secure it.

Also, all browsers have dangerous vulnerabilities that are being warned about, though IE still seems to be leading the way (it is more widespread and more targetted for various reasons).

Top 5 Most Read Secunia Security Advisories (Last 24 hours):

- Mozilla Multiple Vulnerabilities
- Microsoft Multiple Products JPEG Processing Buffer Overflow Vulnerability
- Netscape Multiple Vulnerabilities
- Internet Explorer Address Bar Spoofing Vulnerability
- Microsoft Internet Explorer Drag and Drop Vulnerability
Link to these and more information is here:
http://secunia.com/advisories/

In fact, it is becoming increasingly clear that every OS and many, many individual programs over a variety of platforms, are reporting moderate to critical security vulnerabilities.

This is just amazing (http://secunia.com/product/):
Products - Complete List

Below is a complete list of software and operating systems in the Secunia database. Our database currently includes 3818 pieces of software and operating systems.

Click a product to view all current Secunia Advisories affecting it.

Please note that info is added to our database daily, through software suggestions from customers and vulnerability reports affecting new software.

Please check the top of these pages for this:

View Patched/Unpatched advisories on all products e.g.:
Internet Explorer 6 (http://secunia.com/product/11/) | Mozilla Firefox (http://secunia.com/product/3256/http://secunia.com/product/11/) | Opera 7


and this on the right hand side:
2004-08-16
A new spoofing vulnerability (http://secunia.com/advisories/12304/) has been found in Internet Explorer 6. A test is available here (http://secunia.com/internet_explorer_address_bar_spoofing_test_popup/).

- - - - - - - - -

2004-07-01
Many browsers are vulnerable to the Frame Injection Vulnerability (http://secunia.com/advisories/11978/). Test your browser here (http://secunia.com/multiple_browsers_frame_injection_vulnerability_te st/).

Score - July to present:

Mozilla Firefox 0.x : 10, 2 unpatched

Internet Ecplorer6 : 6, 3 unpatched

Opera 7.x. : 4, all patched

It is time we all payed attention, no matter what software we run. It is the 'New Order World - Reality of the Internet' LOL - Thanks G. Bush for inspiring a phrase!