<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>CompuWorld &#187; firefox bugs</title>
	<atom:link href="http://www.nofullstop.com/category/bugs-found/firefox-bugs/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.nofullstop.com</link>
	<description>The Genius Inside You Is Still Sleeping</description>
	<lastBuildDate>Thu, 09 Sep 2010 17:25:53 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0.1</generator>
		<item>
		<title>FireFox 3.0.3 Released 3 Days After 3.0.2</title>
		<link>http://www.nofullstop.com/2008/09/27/firefox-303-released-3-days-after-302/</link>
		<comments>http://www.nofullstop.com/2008/09/27/firefox-303-released-3-days-after-302/#comments</comments>
		<pubDate>Sat, 27 Sep 2008 10:17:01 +0000</pubDate>
		<dc:creator>Salman</dc:creator>
				<category><![CDATA[bugs found]]></category>
		<category><![CDATA[firefox bugs]]></category>
		<category><![CDATA[firefox news]]></category>
		<category><![CDATA[news]]></category>

		<guid isPermaLink="false">http://www.nofullstop.com/?p=1818</guid>
		<description><![CDATA[Three days after the release of FireFox 3.0.2 a new update has been launched. FireFox 3.0.3 is all set to be used. Somehow, in previous release users couldn&#8217;t retrieve saved passwords or save new passwords. Although I was also using the same release but I didn&#8217;t face any problems. I am sure some out there [...]]]></description>
			<content:encoded><![CDATA[<p>Three days after the <a href="http://www.nofullstop.com/2008/09/25/firefox-releases-new-update-firefox-302/" target="_blank">release of FireFox 3.0.2</a> a new update has been launched. <a href="http://en-us.www.mozilla.com/en-US/firefox/3.0.3/releasenotes/" target="_blank">FireFox 3.0.3 is all set to be used</a>. Somehow, in previous release users couldn&#8217;t retrieve saved passwords or save new passwords. Although I was also using the same release but I didn&#8217;t face any problems.</p>
<p>I am sure some out there might have faced this problem of not able to recover saved passwords and hence for them FireFox 3.0.3 becomes a must download. Mostly, your FireFox will update itself on its own but if it dosen&#8217;t then I guess you should do it manually so that your passwords are remembered.</p>
<p>Features of 3.0.3 which are common with 3.0.2 are:</p>
<ul>
<li>Fixed several theme issues that affected right-to-left locales.</li>
<li>Fixed several stability issues.</li>
<li>Fixed a number of minor issues with the layout of certain web pages.</li>
<li>Official releases for <a href="http://en-us.www.mozilla.com/en-US/firefox/all.html#languages">Sinhala and Slovene</a> are               now available.</li>
<li>Beta releases for Bengali, Galician, Hindi, Icelandic, Kannada, Marathi, Telugu, and Thai are               <a href="http://en-us.www.mozilla.com/en-US/firefox/all.html#beta_versions">available for testing.</a></li>
<li>Add new Extended Validation (EV) roots to Firefox 3.0.2.</li>
<li>Fixed several hangs and crashes that occurred when using screen readers.</li>
</ul>
<hr>
<p>© <a href="">CompuWorld</a> - because <b><i>The Genius Inside You Is Still Sleeping.</i></b><br/></p>
	Tags: <a href="http://www.nofullstop.com/tag/firefox-bugs/" title="firefox bugs" rel="tag">firefox bugs</a>, <a href="http://www.nofullstop.com/tag/firefox-news/" title="firefox news" rel="tag">firefox news</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.nofullstop.com/2008/06/13/how-about-being-part-of-a-world-record/" title="How About Being Part Of A World Record? (June 13, 2008)">How About Being Part Of A World Record?</a> (1)</li>
	<li><a href="http://www.nofullstop.com/2008/09/25/firefox-releases-new-update-firefox-302/" title="FireFox Releases New Update &#8211; FireFox 3.0.2 (September 25, 2008)">FireFox Releases New Update &#8211; FireFox 3.0.2</a> (1)</li>
	<li><a href="http://www.nofullstop.com/2007/03/21/speculations-rising-for-release-of-firefox-30-internet-explorer-8/" title="Speculations Rising For Release Of FireFox 3.0 &#38; Internet Explorer 8 (March 21, 2007)">Speculations Rising For Release Of FireFox 3.0 &#38; Internet Explorer 8</a> (0)</li>
	<li><a href="http://www.nofullstop.com/2007/02/27/scary-vulnerabilities-in-ie7-and-firefox-20/" title="Scary Vulnerabilities In IE7 And Firefox 2.0 (February 27, 2007)">Scary Vulnerabilities In IE7 And Firefox 2.0</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.nofullstop.com/2008/09/27/firefox-303-released-3-days-after-302/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Scary Vulnerabilities In IE7 And Firefox 2.0</title>
		<link>http://www.nofullstop.com/2007/02/27/scary-vulnerabilities-in-ie7-and-firefox-20/</link>
		<comments>http://www.nofullstop.com/2007/02/27/scary-vulnerabilities-in-ie7-and-firefox-20/#comments</comments>
		<pubDate>Tue, 27 Feb 2007 13:47:00 +0000</pubDate>
		<dc:creator>Salman</dc:creator>
				<category><![CDATA[IE bugs]]></category>
		<category><![CDATA[bugs found]]></category>
		<category><![CDATA[firefox bugs]]></category>

		<guid isPermaLink="false">http://www.nofullstop.com/2007/02/27/scary-vulnerabilities-in-ie7-and-firefox-20/</guid>
		<description><![CDATA[This is scary. I could see my boot.ini file online? Huh. The common vulnerability makes it clear that the flaw in programming could be used for some dangerous works over the Internet. Affected Software Internet Explorer 7 Internet Explorer 6 Internet Explorer 5.01 FireFox 2.0.0.2 FireFox 1.5.0.9 Description For demonstration of vulnerability in IE7 click [...]]]></description>
			<content:encoded><![CDATA[<p style="text-align: justify"><img src="http://www.nofullstop.com/blog/images/ie_vs_firefox.jpg" alt="" width="143" height="107" align="left" />This is scary. I could see my boot.ini file online? Huh. The common vulnerability makes it clear that the flaw in programming could be used for some dangerous works over the Internet.</p>
<p><span style="font-weight: bold">Affected Software<br />
</span>Internet Explorer 7<br />
Internet Explorer 6<br />
Internet Explorer 5.01<br />
FireFox 2.0.0.2<br />
FireFox 1.5.0.9</p>
<p><span style="font-weight: bold">Description<br />
</span></p>
<p style="text-align: justify">For demonstration of vulnerability in IE7 click <a href="http://lcamtuf.coredump.cx/focusbug/ieversion.html">here</a>. For FireFox click <a href="http://lcamtuf.coredump.cx/focusbug/ffversion.html">here</a>. This is a must see for all of the Internet users around. Using the vulnerability some diverted keystrokes which you hit to enter forms on a web page could be used to enter commands over the Internet to see your boot.ini. And this could just be the beginning.</p>
<blockquote>
<p style="text-align: justify">&#8220;Both examples are Windows-specific, and require C:BOOT.INI to exist and be readable by users. The attack itself is not limited to a particular operating system, but I decided to provide a demonstration for most popular desktop OS &#8211; *nix versions that access /etc/hosts or /etc/passwd are easy to develop,”  Zalewski, one who found the vulnerability, stated.“In all modern browsers,  form fields (used to upload user-specified files to a remote server) enjoy some added protection meant to prevent scripts from arbitrarily choosing local files to be sent, and automatically submitting the form without user knowledge. For example, “.value” parameter cannot be set or changed, and any changes to .type reset the contents of the field,” added Michal Zalewski.</p>
</blockquote>
<p style="text-align: justify"><span style="font-weight: bold">Workaround Available<br />
</span> User interaction is a must if both vulnerabilities are to be successfully exploited. In this context, the user would have to enter text in malformed areas on a web page, either from IE or FireFox.  Zalewski explained that the keyboard input in unrelated locations can be selectively geared toward input fields by the attacker.</p>
<p style="text-align: justify">No real workaround looks to be available currently but we will keep you updated with the latest news.</p>
<p style="text-align: justify">Microsoft on one side was shouting that there IE7 is free of vulnerabilities while FireFox was busy releasing patches this month. Now this kick will surely add to there wounds. Let us wait and see how they react.</p>
<p><!-- AddThis Bookmark Button BEGIN --><span style="font-size: 78%"><span style="font-weight: bold">Source: </span><a href="http://news.softpedia.com/news/IE7-and-Firefox-2-0-Share-Vulnerabilities-47439.shtml">Softpedia</a><br />
</span></p>
<hr>
<p>© <a href="">CompuWorld</a> - because <b><i>The Genius Inside You Is Still Sleeping.</i></b><br/></p>
	Tags: <a href="http://www.nofullstop.com/tag/firefox-bugs/" title="firefox bugs" rel="tag">firefox bugs</a>, <a href="http://www.nofullstop.com/tag/ie-bugs/" title="IE bugs" rel="tag">IE bugs</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.nofullstop.com/2008/02/20/microsoft-internet-explorer-multiple-vulnerabilities/" title="Microsoft Internet Explorer Multiple Vulnerabilities (February 20, 2008)">Microsoft Internet Explorer Multiple Vulnerabilities</a> (1)</li>
	<li><a href="http://www.nofullstop.com/2008/09/27/firefox-303-released-3-days-after-302/" title="FireFox 3.0.3 Released 3 Days After 3.0.2 (September 27, 2008)">FireFox 3.0.3 Released 3 Days After 3.0.2</a> (0)</li>
	<li><a href="http://www.nofullstop.com/2007/07/16/internet-explorer-hit-with-another-vulenrability/" title="Internet Explorer Hit With Another Vulenrability (July 16, 2007)">Internet Explorer Hit With Another Vulenrability</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.nofullstop.com/2007/02/27/scary-vulnerabilities-in-ie7-and-firefox-20/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.413 seconds -->
<!-- Cached page served by WP-Cache -->
