Browse by Tags

All Tags » Web Browser Issues (RSS)

Fake IRS page and email, See which browser will protect user from phished site

See http://www.dozleng.com/updates/index.php?showtopic=16115 for screenshots. Result: Opera: 2 Firefox: 1 and 1 Internet Explorer: 2

Opera JPEG Processing Heap Corruption Vulnerabilities

Opera is vulnerable in parsing the JPEG file format. Discovered were four vulnerabilities, each in different segments of the file format. posidron will describe in this advisory the two important ones. 1 - ntdll.RtlAllocateHeap() DHT vulnerability 2 ...
Posted by donna | with no comments

Opera Browser patched in secret

Opera patched two remote code execution holes secretly as per Heise Security. Changelog for v9.10 did not mention the said security patch. Details at http://www.heise-security.co.uk/news/83279

Internet Explorer MSXML3 Race Condition Memory Corruption Vulnerability

Microsoft Internet Explorer is prone to a remote memory-corruption vulnerability because of a race condition that may cause a NULL-pointer dereference, read or write operations to invalid addresses, or other memory-corruption issues. Attackers may likely...
Posted by donna | with no comments
Filed under:

Mozilla Foundation Security Advisories (Dec. 19, 2006)

MFSA 2006-76 XSS using outer window's Function object MFSA 2006-75 RSS Feed-preview referrer leak MFSA 2006-74 Mail header processing heap overflows MFSA 2006-73 Mozilla SVG Processing Remote Code Execution MFSA 2006-72 XSS by setting img.src to BLOCKED...
Posted by donna | with no comments

Opera released v9.10 of Opera Browser by adding Phishing filter (fraud protection) and other fixes/improvements

If you are using Opera browser, get the latest version 9.10 which is available now. One of the new security enhancement is by adding a Fraud Protection (aka Phishing filter). See Opera's Fraud Protection in action by viewing the demo at http://portal...

Firefox 2.0 delayed by bug outbreak

The new version of open-source browser Firefox has been delayed for a month. Version 2.0, codenamed Bon Echo, had been due on 26 September but will now make its debut on 24 October. The test schedule has also been adjusted, with the second beta now appearing...
Posted by donna | with no comments
Filed under:

Mozilla Firefox XML Handler Race Condition Memory Corruption Vulnerability

Mozilla Firefox is prone to a remote memory-corruption vulnerability because of a race condition that may result in double-free or other memory-corruption issues. Attackers may likely exploit this issue to execute arbitrary machine code in the context...
Posted by donna | with no comments
Filed under:

OneStat.com reported "Most Popular browsers by Country"

Global usage share Mozilla Firefox has increased according to OneStat.com OneStat.com reported that Mozilla Firefox's browsers have a total global usage share of 12.93 percent. The total usage share of Mozilla Firefox increased 1.14 percent since May...
Posted by donna | with no comments
Filed under:

IE 7 can be reset finally

The IE team blogged today that Internet Explorer 7 in Windows XP and Vista can be reset if the browser become unstable due to badly written add-ons or side-effect of malware infection. They wrote... " We have heard from users on their need to recover...
Posted by donna | with no comments
Filed under:

Internet Explorer "mhtml:" Redirection Disclosure of Sensitive Information

Internet Explorer "mhtml:" Redirection Disclosure of Sensitive Information Affected Software: Microsoft Internet Explorer 6.x codedreamer has discovered a vulnerability in Internet Explorer, which can be exploited by malicious people to disclose potentially...
Posted by donna | with no comments
Filed under:

IE7 For XP Beta 2: Has Firefox Met Its Match?

The new public release of Internet Explorer Beta 2 is, according to Microsoft, more stable and ready to be used. But is it ready to go up against Firefox? Find out at http://www.informationweek.com/showArticle.jhtml?articleID=186700892 Below is part of...
Posted by donna | with no comments
Filed under:

Mozilla Foundation Security Advisory 2006-27

Title: Table Rebuilding Code Execution Vulnerability Impact: Critical Announced: April 21, 2006 Reporter: TippingPoint and the Zero Day Initiative Products: Firefox, Thunderbird, Mozilla Suite Fixed in: Firefox 1.5.0.2 Firefox 1.0.8 Thunderbird 1.5.0...
Posted by donna | with no comments

Safari "rowspan" Attribute Denial of Service Vulnerability

Affected Software: Safari 1.x Safari 2.x Yannick von Arx has discovered a vulnerability in Safari, which can be exploited by malicious people to cause a DoS (Denial of Service). The vulnerability is caused due to an error in the processing of "td" HTML...
Posted by donna | with no comments
Filed under:

Internet Explorer "object" Tag Memory Corruption Code Execution

Affected Software: Microsoft Internet Explorer 6.x Michal Zalewski has discovered a vulnerability in Internet Explorer, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an error in the processing...
Posted by donna | with no comments
Filed under:

Firefox "focus()" Memory Corruption Weakness

Affected Software: Mozilla Firefox 1.x A weakness has been discovered in Firefox, which can be exploited by malicious people to cause a DoS (Denial of Service). The weakness is caused due to an error in the handling of unexpected "focus()" JavaScript...
Posted by donna | with no comments
Filed under:

Netscape Memory Corruption Vulnerability

Netscape Browser version 8.1 (User-agent: Windows; U; Windows NT 5.0; en-US; rv:1.7.5) Gecko/20060111 Netscape/8.1) is confirmed as affected to recently published memory corruption vulnerability described at http://www.mozilla.org/security/announce/2006...
Posted by donna | with no comments
Filed under:

Firefox Browser: Security and Stability Update available

Time to update your Firefox browser to v1.5.0.2. It has security and stability fixes as per Mozilla. Via Calendar of Updates
Posted by donna | with no comments
Filed under:

Internet Explorer Window Loading Race Condition Address Bar Spoofing

Hai Nam Luke has discovered a vulnerability in Internet Explorer, which can be exploited by malicious people to conduct phishing attacks. The vulnerability is caused due to a race condition in the loading of web content and Macromedia Flash Format files...
Posted by donna | with no comments
Filed under:

Internet Explorer Unspecified Automatic .HTA Application Execution

Affected Software: Microsoft Internet Explorer 6.x Jeffrey van der Stad has reported a vulnerability in Internet Explorer, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an unspecified error...
Posted by donna | with no comments
Filed under:
More Posts Next page »