(July 17, 2008)
Mozilla has released patches to address two critical flaws in the
Firefox browser. Firefox 2.0.0.16 and Firefox 3.0.1 address the "carpet
bomb" threat to Windows users who had both the Apple Safari and Firefox
installed on the same system. The other vulnerability addressed is in
Firefox's CSSValue array data structure which could be exploited to
force a crash and to run malicious code. Users of Firefox 2.0 were also
reminded by Mozilla that support for that version of the browser will
end in December of this year in line with its policy of only supporting
older versions of software for six months after a major release.
http://www.computerworld.com/action/...=NLT_AM&nlid=1
http://www.heise.de/english/newsticker/news/112947