firefox-2.png

With five Critical bugs fixed and two with the level High, Firefox pushed a new release 2.0.0.1, but that’s not all ! There is something new with the release of Visa, which is now generally supported with few caveats. There is more issues which persist in Firefox 2 general and specific ones for windows, macos and linux users, and of course don’t forget the number of incompatible extensions as usual (I have 8 incompatible extensions on 65 installed). Below list of fixed bugs in Firefox 2.0.0.1 from high to less critical :

  • Mozilla SVG Processing Remote Code Execution
  • LiveConnect crash finalizing JS objects
  • Privilege escallation using watch point
  • CSS cursor image buffer overflow (Windows only)
  • Crashes with evidence of memory corruption (rv:1.8.0.9/1.8.1.1)
  • XSS using outer window’s Function object
  • XSS by setting img.src to javascript: URI
  • RSS Feed-preview referrer leak