Home Area 51 Browsers Firefox Mozilla: Firefox can be hacked via booby-trapped images

Firefox Logo 2Bitchen... more reason to run to the hills and just spend the rest of my life naked, in a jungle, contemplating why Bill left Microsoft. OR.... or... I can get drunk. Maybe the later... oh and make sure you update your browser. 

For the second time this week, Mozilla has rushed out a Firefox security update to fix a dangerous security vulnerability.

The latest vulnerability, which was discovered and reported by representatives from Red Hat, “could be attacked simply by displaying a maliciously crafted image.”

The skinny from a Mozilla advisory:
follow Ryan Naraine on twitter

The libpng graphics library, used by Firefox and Thunderbird as well as many other software packages, contains an exploitable integer overflow bug. An attacker could craft malicious images which exploit this bug, and deliver them to users through websites or email messages.

This bug is remotely exploitable and can lead to arbitrary code execution. Firefox, Thunderbird and Seamonkey users could be attacked simply by displaying a maliciously crafted image.

Read the entire article....

blog comments powered by Disqus