Jump to content

This Firefox vulnerability is so bad, the U.S. government is urging users to patch it immediately


RV_

Recommended Posts

The short version: Firefox flaw allowed complete access to users computers. If you have Firefox on your computer you can open it and click on this link to Mozilla: https://www.mozilla.org/en-US/firefox/mac/

If you look at the top of the page you should see this: " Congrats! You’re using the latest version of Firefox " If you don't see that - update Firefox immediately there on their website.

Details from PC World

Excerpt:

"We’re just 10 days into 2020, and already we have our first critical security flaw. It comes from Mozilla’s popular Firefox browser, and it’s so dangerous, the Homeland Security Cybersecurity and Infrastructure Security Agency is warning users about it.

The good news is that it’s already been patched. The bad news is that it’s already being exploited in the wild. And it’s about as bad as it can get. In technical terms, as Mozilla explains, “Incorrect alias information in IonMonkey JIT compiler for setting array elements could lead to a type confusion. That means that an attacker could exploit the Javascript code to surreptitiously hack a user’s PC and install malicious code outside of Firefox. Mozila says it is “aware of targeted attacks in the wild abusing this flaw,” but doesn’t give any information about how widespread the attacks are.

The Department of Homeland Security echoed that warning and urged users to “apply the necessary updates.” The government regularly tracks malware and vulnerabilities, but rarely do consumer apps rise to the level of a cyber alert.

The bug was first detected by Chinese security company Qihoo 360 just two days after the initial update was released, according to TechCrunch. The vulnerability is patched in Firefox 72.0.1 and Firefox Extended Support Release (ESR) 68.4.1. Firefox should check for updates immediately upon launch, but if you’ve disabled that setting, you can update your browser in the General tab inside settings."

The rest with other related hotlinks is here: https://www.pcworld.com/article/3513538/mozilla-firefox-vulnerability-is-so-bad-the-us-government-is-urging-users-to-patch-it-immediately.html

 

Edited by RV_

RV/Derek
http://www.rvroadie.com Email on the bottom of my website page.
Retired AF 1971-1998


When you see a worthy man, endeavor to emulate him. When you see an unworthy man, look inside yourself. - Confucius

 

“Those who can make you believe absurdities, can make you commit atrocities.” ... Voltaire

Link to comment
Share on other sites

  • 3 weeks later...

The link says it is for Mac users.Does it apply to W10 users too?

 

2000 Winnebago Ultimate Freedom USQ40JD, ISC 8.3 Cummins 350, Spartan MM Chassis. USA IN 1SG retired;Good Sam Life member,FMCA ." And so, my fellow Americans: ask not what your country can do for you--ask what you can do for your country.  John F. Kennedy 20 Jan 1961

 

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

Loading...
×
×
  • Create New...