All the latest UK technology news, reviews and analysis

Firefox and Chrome get security updates

by Shaun Nichols

21 Oct 2010

Be the first to comment

  • Tweet this
Firefox logo

Mozilla and Google have released security updates for their respective Firefox and Chrome web browsers.

The Firefox update includes fixes for nine security flaws, including five remote code execution vulnerabilities. If exploited, such flaws can allow attackers to remotely install malware on a targeted system without user notification.

The update also addresses two information disclosure vulnerabilities that could be used by an attacker to perform cross-site scripting attacks. The remaining patches cover secure key exchange and SSL protocols.

The Chrome update, meanwhile, patches 10 flaws in multiple versions of the browser, including two unique to the Linux version.

Just one of the flaws is rated 'critical', and concerns a crash triggered by a flaw in the AutoFill component.

Five of the vulnerabilities, including one of the Linux-only flaws, are rated as 'high' risk. Two were credited to third-party researchers who were awarded $500 (£315) under the company's paid disclosure programme.

Two of the remaining four vulnerabilities are classified as 'medium' risk, and two as 'low' risk.

The US Computer Emergency Response Team is advising users and administrators to review the updates and install any necessary patches.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

37%

0%

11%

52%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Availability & Capacity Lead

About Us WorldPay provides a globally connected, locally...

Change & Configuration Administrator

About Us WorldPay provides a globally connected, locally...

SQL Server Developer - SSIS - Zurich

SQL Server Developer - Our client, an international...

IT Technical Service Delivery Manager / ITIL / Reigate - 65K

IT Technical Service Delivery Manager / ITIL / Reigate...

To send to more than one email address, simply separate each address with a comma.