Free Republic
Browse · Search
Smoky Backroom
Topics · Post Article

Skip to comments.

Unpatched Firefox flaw may expose users
ZDNet ^ | September 9, 2005, 3:53 AM PT | Joris Evers

Posted on 09/09/2005 9:43:47 AM PDT by Bush2000

Unpatched Firefox flaw may expose users
By Joris Evers, CNET News.com

Published on ZDNet News: September 9, 2005, 3:53 AM PT


A new, unpatched flaw in that affects all versions of Firefox could let attackers surreptitiously run malicious code on users' PCs, a security researcher has warned.

The problem lies in the way Firefox handles Web links that are overly long and contain dashes, security researcher Tom Ferris said in an interview via instant messaging late Thursday.

He posted an advisory and a proof of concept to the Full Disclosure security mailing list and to his Security Protocols Web site.

The security vulnerability is a buffer overflow flaw that "allows for an attacker to remotely execute arbitrary code" on a vulnerable PC, Ferris said. An attacker could host a Web site containing the malicious code to exploit the flaw, he said. Though his proof of concept only crashes Firefox, Ferris claims he has been able to tweak it to run code.

Buffer overflows are a commonly exploited security problem. They occur when a program allows data to be written beyond the allocated end of a buffer in memory. A computer can be made to execute potentially malicious code by feeding in extra data that is designed to flood the buffer.

Ferris reported the bug to the Mozilla Foundation on Sunday, intending to go through the organization's bug-reporting process, he said. However, in an example of the uneasy alliance between security researchers and software makers, he decided to publicly disclose the flaw after a run-in with Mozilla staff, he said.

Mozilla, which coordinates development of Firefox and distributes the software, could not immediately comment on the flaw disclosure. However, a source close to the organization confirmed that Ferris had filed several bug reports, including this specific one.

Since the debut of Firefox 1.0 in November, usage of the open-source browser has grown. Security has been a main selling point for Firefox over Microsoft's Internet Explorer, which has begun to see its market share dip slightly--for the first time in years.

However, Firefox has had its own security woes. Several serious holes in the browser have been plugged since its official release, and experts have said that safe Web browsers don't exist.

The public bug disclosure comes just as Mozilla released the first beta of Firefox 1.5. The final release of the next Firefox update, which includes security enhancements, is due by year's end, according to the Firefox road map.

Ferris has found bugs in Microsoft software before, including a yet-unpatched flaw in Internet Explorer that Microsoft still has under investigation.

Earlier this month Microsoft credited Ferris with reporting a bug in a Windows feature called Remote Desktop Protocol that could allow an attacker to remotely restart Windows systems.


TOPICS: Heated Discussion
KEYWORDS: bestofgoldeneagle; firefox; forqclinton; geisforqclinton; stillbetterthanmsie
Navigation: use the links below to view more comments.
first 1-2021-4041-6061-80 ... 121-124 next last

1 posted on 09/09/2005 9:43:49 AM PDT by Bush2000
[ Post Reply | Private Reply | View Replies]

To: Bush2000

"may expose users"

I thought I felt a draft :)


2 posted on 09/09/2005 9:45:11 AM PDT by YouPosting2Me
[ Post Reply | Private Reply | To 1 | View Replies]

To: Golden Eagle

Thought this might be of interest to you.


3 posted on 09/09/2005 9:47:38 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 2 | View Replies]

Comment #4 Removed by Moderator

To: John Robinson
I don't have FireFox at work, where I am now, but when I get home I am going to give this a try.

Thing is, the more popular FF becomes, the more vulnerable it wil be to hackers.  Hopefully Mozilla will be more proactive with the patches than Microsoft has been.

5 posted on 09/09/2005 10:03:19 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Bush2000

6 posted on 09/09/2005 10:09:48 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies]

To: rdb3; chance33_98; Calvinist_Dark_Lord; Bush2000; PenguinWry; GodGunsandGuts; CyberCowboy777; ...

7 posted on 09/09/2005 10:11:27 AM PDT by ShadowAce (Linux -- The Ultimate Windows Service Pack)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Bush2000

Im sure youre really upset he published the bug right?


8 posted on 09/09/2005 10:15:14 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 1 | View Replies]

To: YouPosting2Me

lol...


9 posted on 09/09/2005 10:15:58 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 2 | View Replies]

To: softwarecreator

Works now! Wrong kind of dash.


10 posted on 09/09/2005 10:16:10 AM PDT by John Robinson
[ Post Reply | Private Reply | To 5 | View Replies]

To: N3WBI3
Im sure youre really upset he published the bug right?

If he published actual exploit instructions, yeah. I think that's irresponsible.
11 posted on 09/09/2005 10:19:34 AM PDT by Bush2000 (Linux -- You Get What You Pay For ... (tm)
[ Post Reply | Private Reply | To 8 | View Replies]

To: John Robinson
HAHAHHA ... I see you had the admin remove the post!!  Hate when that happens, you know?  =)
12 posted on 09/09/2005 10:20:20 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 10 | View Replies]

To: softwarecreator

Well there goes any chance of reasonable discussion, here comes "open source is evil"...thanks swc


13 posted on 09/09/2005 10:20:34 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 3 | View Replies]

To: N3WBI3
thanks swc

Come on, this could be interesting!

We all know there are going to be occasional flaws in FireFox, so there's really no reason to gloat.

14 posted on 09/09/2005 10:22:28 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Bush2000
...and experts have said that safe Web browsers don't exist.

Experts are right, for a change.

15 posted on 09/09/2005 10:25:53 AM PDT by Doohickey (If you choose not to decide, you still have made a choice...I will choose freewill.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: softwarecreator

Yeah, it triggers when viewing the page... so you don't have to click the link. Didn't want to crash people w/o warning so I pulled the comment.


16 posted on 09/09/2005 10:26:32 AM PDT by John Robinson
[ Post Reply | Private Reply | To 12 | View Replies]

To: Bush2000

Funny you seem to be masturbatory in celebratory post here. In fact the article you posted has a direct link to the exploit...


17 posted on 09/09/2005 10:27:37 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 11 | View Replies]

To: John Robinson
Didn't want to crash people w/o warning so I pulled the comment.

Probably a good idea.  I'm going to try this later ... thanks for the tip.

18 posted on 09/09/2005 10:28:19 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 16 | View Replies]

To: N3WBI3
Funny you seem to be masturbatory in celebratory post here

ewwwww .... and you are worried about GE making this thread less than intelligent?  I think you just lowered the bar.  =)

19 posted on 09/09/2005 10:29:47 AM PDT by softwarecreator (Facts are to liberals as holy water is to vampires.)
[ Post Reply | Private Reply | To 17 | View Replies]

To: softwarecreator
Come on, this could be interesting!

No its going to be annoying, thanks.. I might as well post the tripe list now because he will hit every point on it. Some people get joy out of trolling and some out of watching flame wars that trolls start. People who want to discuss things are neither of the above.

We all know there are going to be occasional flaws in FireFox, so there's really no reason to gloat.

And yet I fully expect him to do just that...

20 posted on 09/09/2005 10:29:51 AM PDT by N3WBI3 (If SCO wants to go fishing they should buy a permit and find a lake like the rest of us..)
[ Post Reply | Private Reply | To 14 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041-6061-80 ... 121-124 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
Smoky Backroom
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson