[NaLug] [Firefox/Mozilla] IDN buffer overflow security issue

acrux acrux_it a libero.it
Mer 14 Set 2005 16:40:14 CDT


What Firefox and Mozilla users should know about the IDN buffer
overflow security issue

On September 6 a security vulnerability affecting all versions of
Mozilla Firefox and the Mozilla Suite was reported to Mozilla by Tom
Ferris and on September 8th was publicly disclosed.

On September 9, the Mozilla team released a configuration change which,
as a temporary measure to work around this problem, disables IDN in the
browser. IDN functionality will be restored in a future product update.
The fix is either a manual configuration change or a small download
which will make this configuration change for the user. Instructions on
administering these changes can be found below. 

https://addons.mozilla.org/messages/307259.html


-- 
vesuvio | LinuxMachine 156116 
powered by GNU/Linux CRUX 
# GnuPG/PGP Key_ID: 0x378EECB8
-------------- parte successiva --------------
Un allegato non testuale è stato rimosso....
Nome:        non disponibile
Tipo:        application/pgp-signature
Dimensione:  189 bytes
Descrizione: non disponibile
Url:         /pipermail/nalug_shaney.org/attachments/20050914/7164bd2a/attachment.bin


Maggiori informazioni sulla lista NaLug