Mozilla/Firefox Security Problem + Fix

Status
Not open for further replies.
Branches have been created for three of mozilla.org's latest releases, in order to fix an external windows protocol handler bug. The fix involves disabling the shell: protocol handler, which was found to enable pages to run executables on Windows via a link. Builds should officially be available shortly, and there will also be an XPI offered to disable the pref. Alternatively, you can set the pref "network.protocol-handler.external.shell" in about:config to 'false' to also remove the exploit.
Fix patch: http://ftp.mozilla.org/pub/mozilla.org/mozilla/nightly/experimental/shellblock/shellblock.xpi

http://www.mozillazine.org/
 
goodcow, that would be a bad idea... you can't install windows updates if you do (well you can download and install the manually but that would be a ROYAL pain in the ass for your IT people)... unless of course your whole campus is full of macs or linux boxes.
 
Looks like firefox is getting popular enough for haters. Or some good old MS anti-competition tactics.
 
Mashing said:
goodcow, that would be a bad idea... you can't install windows updates if you do (well you can download and install the manually but that would be a ROYAL pain in the ass for your IT people)... unless of course your whole campus is full of macs or linux boxes.
huh? IT people don't manually go to windows update to update PC's... they have special software packages that do that shit for them!
 
Mashing said:
goodcow, that would be a bad idea... you can't install windows updates if you do (well you can download and install the manually but that would be a ROYAL pain in the ass for your IT people)... unless of course your whole campus is full of macs or linux boxes.

We run windows update server through work, the reg entries don't relate to IE at all, im 90% sure you don't need IE for windows update. we have an update server that downloads and disperses the updates internally so everyone doesn't bomb the net connection.
 
Status
Not open for further replies.
Top Bottom