21 Mar 2007
Firefox users will be receiving automatic updates to their Firefox 1.5 and 2.0 browsers after the Mozilla Foundation released updated versions of the code.
A variety of features have been fixed mostly concerned with usability. Only one part of the update is security related, pertaining to the FTP protocol found in both versions of the browser.
"The specification of the FTP protocol allows the server response to include an alternative server address, although this is rarely used in practice," said Mozilla.
"A user reported that a malicious web page hosted on a specially-coded FTP server could use this feature to perform a rudimentary port scan of machines inside the firewall of the victim.
"By itself this causes no harm, but information about an internal network may be useful to an attacker should there be other vulnerabilities present on the network."
Other issues fixed in version 2.0 include allowing software updates on computers where the user does not have administrator access, and modifications to the way the browser handles sites like Gmail when the browser is restored after a crash.
It also fixes various compatibility problems with Windows Vista, for which Mozilla suggests Firefox 2.0 as the preferred browser.
Version 1.5 fixes include resolutions to the numerous problems with Apple computers using the Rosetta translator, PDF incompatibility for Windows machines and a fix allowing proper use of Gnome with Fedora Core 3.
Mozilla is recommending all users to upgrade to version 2.0 of the browser before support for version 1.5 is cut off on 24 April, although the older software is still available for download.
Latest stories from Open Source
Related videos
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
V3 examines the key strengths and weaknesses of Samsung's latest iPhone killer
Connect with V3.co.uk
Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them
The importance of understanding your infrastructure
C#, WPF, Silverlight, UI Development, Software Engineers...
Candidate required who is used to working in a client...
Build Change Release Manager / Build Change Manager...
IT Service Desk Manager / Liverpool / Up to £60,000...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?