<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security and Privacy &#187; firefox</title>
	<atom:link href="http://hijack-this.co.uk/category/firefox/feed/" rel="self" type="application/rss+xml" />
	<link>http://hijack-this.co.uk</link>
	<description>My ramblings on how to protect yourself online</description>
	<lastBuildDate>Thu, 01 Dec 2011 08:19:43 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Fake Firefox update</title>
		<link>http://hijack-this.co.uk/2011/10/fake-firefox-update/</link>
		<comments>http://hijack-this.co.uk/2011/10/fake-firefox-update/#comments</comments>
		<pubDate>Wed, 19 Oct 2011 21:15:22 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[spam]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=581</guid>
		<description><![CDATA[Lots of spam emails circulating with following content New update arrive. Your security is our top priority. Our open source security process means we have an international community of experts working around the clock to monitor the latest threats. As soon as a security threat is discovered, we write a patch and release an update [...]]]></description>
			<content:encoded><![CDATA[<p>Lots of spam emails circulating with following content</p>
<p>New update arrive.</p>
<p>Your security is our top priority. Our open source security process means we have an international community of experts working around the clock to monitor the latest threats. As soon as a security threat is discovered, we write a patch and release an update to stay one step ahead. Downloading Firefox updates is a very important part of staying safe online. Firefox is constantly evolving as our community finds ways to make it better, and as we adjust to the latest security threats. Keeping your Firefox up-to-date is the best way to make sure that you are using the smartest, fastest and . most importantly . safest version of Firefox available. A Firefox update will not make any changes to your bookmarks, saved passwords or other settings. However, there is a possibility that some of your Add-ons won.t be immediately compatible with new updates. Re-installing Firefox will not affect your settings, bookmarks or preferences in any way. A Firefox software update is a quick download of small amounts of new code to your existing Firefox browser. These small patches can contain security fixes or other little changes to the browser to ensure that you are using the best version of Firefox available. Update in a click : firefox-7.0.1</p>
<p><span class="mceItemHidden">needless to say the download is a trojan, identified by several <span class="hiddenSpellError" pre="several ">antiviruses</span> as <span class="hiddenSpellError" pre="as ">carpberb</span> and by others as Z-bot Please don&#8217;t fall for it Firefox 7 isn&#8217;t out yet, although it will be soon</span></p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2011%2F10%2Ffake-firefox-update%2F&amp;title=Fake%20Firefox%20update" id="wpa2a_2"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2011/10/fake-firefox-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Another new URGENT Adobe flash security update</title>
		<link>http://hijack-this.co.uk/2011/06/another-new-urgent-adobe-flash-security-update/</link>
		<comments>http://hijack-this.co.uk/2011/06/another-new-urgent-adobe-flash-security-update/#comments</comments>
		<pubDate>Mon, 06 Jun 2011 08:24:34 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[adobe]]></category>
		<category><![CDATA[Apple]]></category>
		<category><![CDATA[browser]]></category>
		<category><![CDATA[Chrome]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[Warnings and Alerts]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=499</guid>
		<description><![CDATA[http://www.adobe.com/support/security/bulletins/apsb11-13.html An important vulnerability has been identified in Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris, and Adobe Flash Player 10.3.185.22 and earlier versions for Android. This universal cross-site scripting vulnerability (CVE-2011-2107) could be used to take actions on a user&#8217;s behalf on any website or webmail provider, if the [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.adobe.com/support/security/bulletins/apsb11-13.html" target="_blank">http://www.adobe.com/support/security/bulletins/apsb11-13.html</a><br />
An important vulnerability has been identified in Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris, and Adobe Flash Player 10.3.185.22 and earlier versions for Android. This universal cross-site scripting vulnerability (CVE-2011-2107) could be used to take actions on a user&#8217;s behalf on any website or webmail provider, if the user visits a malicious website. There are reports that this vulnerability is being exploited in the wild in active targeted attacks designed to trick the user into clicking on a malicious link delivered in an email message.<br />
Adobe recommends users of Adobe Flash Player 10.3.181.16 and earlier versions for Windows, Macintosh, Linux and Solaris update to Adobe Flash Player 10.3.181.22 (10.3.181.23 for ActiveX). Adobe expects to make available an update for Flash Player 10.3.185.22 for Android during the week of June 6, 2011.</p>
<p>Adobe is still investigating the impact to the Authplay.dll component that ships with Adobe Reader and Acrobat X (10.0.2) and earlier 10.x and 9.x versions of Adobe Reader and Acrobat for Windows and Macintosh operating systems. Adobe is not aware of any attacks targeting Adobe Reader or Acrobat in the wild.</p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2011%2F06%2Fanother-new-urgent-adobe-flash-security-update%2F&amp;title=Another%20new%20URGENT%20Adobe%20flash%20security%20update" id="wpa2a_4"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2011/06/another-new-urgent-adobe-flash-security-update/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Microsoft is aware of nine fraudulent digital certificates issued by Comodo</title>
		<link>http://hijack-this.co.uk/2011/03/microsoft-is-aware-of-nine-fraudulent-digital-certificates-issued-by-comodo/</link>
		<comments>http://hijack-this.co.uk/2011/03/microsoft-is-aware-of-nine-fraudulent-digital-certificates-issued-by-comodo/#comments</comments>
		<pubDate>Wed, 23 Mar 2011 17:50:02 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Malware]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Rogue Software]]></category>
		<category><![CDATA[scams]]></category>
		<category><![CDATA[Skype]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[Warnings and Alerts]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=456</guid>
		<description><![CDATA[The full advisory can be found on the Web at: http://www.microsoft.com/technet/security/advisory/2524375.mspx. =========================== SUMMARY =========================== Microsoft is aware of nine fraudulent digital certificates issued by Comodo, a certification authority present in the Trusted Root Certification Authorities Store on all supported versions of Microsoft Windows. Comodo advised Microsoft on March 16, 2011 that nine certificates had been [...]]]></description>
			<content:encoded><![CDATA[<p>The full advisory can be found on the Web at: <a href="http://www.microsoft.com/technet/security/advisory/2524375.mspx">http://www.microsoft.com/technet/security/advisory/2524375.mspx</a>.</p>
<p>===========================<br />
SUMMARY<br />
===========================<br />
Microsoft is aware of nine fraudulent digital certificates issued by Comodo, a certification authority present in the Trusted Root Certification Authorities Store on all supported versions of Microsoft Windows. Comodo advised Microsoft on March 16, 2011 that nine certificates had been signed on behalf of a third party without sufficiently validating its identity. These certificates may be used to spoof content, perform phishing attacks, or perform man-in-the-middle attacks against all Web browser users including users of Internet Explorer.</p>
<p>Certificates for the following Web properties are affected:</p>
<p>• login.live.com<br />
• mail.google.com<br />
•www.google.com<br />
• login.yahoo.com (3 certificates)<br />
• login.skype.com<br />
• addons.mozilla.org<br />
• &#8220;Global Trustee&#8221;</p>
<p>Comodo has revoked these certificates, and they are listed in Comodo’s current Certificate Revocation List (CRL). In addition, browsers which have enabled the Online Certificate Status Protocol (OCSP) will interactively validate these certificates and block them from being used.</p>
<p>An update is available for all supported versions of Windows to help address this issue. For more information about this update, see Microsoft Knowledge Base Article 2524375 (<a href="http://support.microsoft.com/kb/2524375">http://support.microsoft.com/kb/2524375</a>).</p>
<p>Typically, no action is required of customers to install this update, because the majority of customers have automatic updating enabled and this update will be downloaded and installed automatically. For more information, including how to manually install this update, see the Suggested Actions section of this advisory.</p>
<p>===========================<br />
RECOMMENDATIONS<br />
===========================<br />
Review Microsoft Security Advisory 2524375 for an overview of the issue, details on affected components, suggested actions, frequently asked questions (FAQ), and links to additional resources. MSRA Security Partners who are experiencing issues believed to be related to the issues described in this advisory should contact us via e-mail or by calling 888-HELPSEC with your custom Access ID.</p>
<p>===========================<br />
ADDITIONAL RESOURCES<br />
===========================<br />
• Microsoft Security Advisory 2524375 – Fraudulent Digital Certificates Could Allow Spoofing –<a href="http://www.microsoft.com/technet/security/advisory/2524375.mspx">http://www.microsoft.com/technet/security/advisory/2524375.mspx</a></p>
<p>• Microsoft Security Response Center (MSRC) Blog: <a href="http://blogs.technet.com/msrc">http://blogs.technet.com/msrc</a></p>
<p>More details on <a href="http://blogs.comodo.com/it-security/data-security/the-recent-ca-compromise/" target="_blank">Comodo blog</a></p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2011%2F03%2Fmicrosoft-is-aware-of-nine-fraudulent-digital-certificates-issued-by-comodo%2F&amp;title=Microsoft%20is%20aware%20of%20nine%20fraudulent%20digital%20certificates%20issued%20by%20Comodo" id="wpa2a_6"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2011/03/microsoft-is-aware-of-nine-fraudulent-digital-certificates-issued-by-comodo/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>The problem with the Prefetch function in Firefox and Chrome</title>
		<link>http://hijack-this.co.uk/2011/01/the-problem-with-the-prefetch-function-in-firefox-and-chrome/</link>
		<comments>http://hijack-this.co.uk/2011/01/the-problem-with-the-prefetch-function-in-firefox-and-chrome/#comments</comments>
		<pubDate>Mon, 31 Jan 2011 11:01:23 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[Chrome]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[Warnings and Alerts]]></category>
		<category><![CDATA[chrome]]></category>
		<category><![CDATA[DNS]]></category>
		<category><![CDATA[protection]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=421</guid>
		<description><![CDATA[Did you know that Firefox and Chrome both have a feature that fetches pages and links that it thinks you might be going to click on? This can slow down your computer and browsing dramatically. The majority of problems come up when using a search engine, particularly Google with its &#8220;preview function&#8221;. The pre-fetch function [...]]]></description>
			<content:encoded><![CDATA[<p>Did you know that Firefox and Chrome both have a feature that fetches pages and links that it thinks you might be going to click on? This can slow down your computer and browsing dramatically. The majority of problems come up when using a search engine, particularly Google with its &#8220;preview function&#8221;.<br />
The pre-fetch function in these browsers silently loads every link in the background and caches ( stores) the pages in your internet temporary files folder used by Firefox or Chrome. So far Internet Explorer has resisted the temptation to do this.<br />
<strong>It also has another major problem when using security software that blocks dangerous or known malicious IP numbers or web addresses</strong>. You either get constant alerts about malicious pages attempting to infiltrate your computer or pop up warnings saying xxxx address or IP number has been blocked. Some security softwares will block you from the original page that you are attempting to visit because of the preloaded link to a potentially malicious site, that can lead to major problems with search engines. In 99% of the time, you have absolutely no intention of ever visisting that site, it is just Firefox or Chrome being <em>helpful</em> and preloading the pages for you<span id="more-421"></span></p>
<p><strong>Here’s how to disable the Firefox prefetch setting</strong>.</p>
<p>1. Type about:config in the address bar and press ENTER. Agree to the warning that changing settings can cause problems</p>
<p>2. Locate and double-click the entry for<br />
network.prefetch-next</p>
<p>3. Set it to false to disable this feature. Double-clicking on the setting will change it.</p>
<div id="attachment_432" class="wp-caption alignleft" style="width: 649px"><img class="size-full wp-image-432 " title="FF_disable-prefetch" src="http://hijack-this.co.uk/wp-content/uploads/2011/01/FF_disable-prefetch.png" alt="" width="639" height="504" /><p class="wp-caption-text">How to disable prefetch in Firefox</p></div>
<p><strong>This is how to disable the prefetch function in Chrome:</strong><br />
1. Click the wrench in the upper-right corner.</p>
<p>2. Select Options<br />
<img class="aligncenter size-full wp-image-425" title="chrome_select_options" src="http://hijack-this.co.uk/wp-content/uploads/2011/01/chrome_select_options.gif" alt="" width="247" height="256" /><br />
3. Select the Under the hood tab.</p>
<p>4. Uncheck &#8220;Use DNS pre-fetching to improve page load performance&#8221; . and then close the options page</p>
<div id="attachment_426" class="wp-caption aligncenter" style="width: 510px"><img class="size-full wp-image-426" title="chrome_disable_prefetch" src="http://hijack-this.co.uk/wp-content/uploads/2011/01/chrome_disable_prefetch.png" alt="" width="500" height="534" /><p class="wp-caption-text">Disable prefetch in Chrome</p></div>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2011%2F01%2Fthe-problem-with-the-prefetch-function-in-firefox-and-chrome%2F&amp;title=The%20problem%20with%20the%20Prefetch%20function%20in%20Firefox%20and%20Chrome" id="wpa2a_8"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2011/01/the-problem-with-the-prefetch-function-in-firefox-and-chrome/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Beware of fake shopping sites</title>
		<link>http://hijack-this.co.uk/2009/11/beware-of-fake-shopping-sites/</link>
		<comments>http://hijack-this.co.uk/2009/11/beware-of-fake-shopping-sites/#comments</comments>
		<pubDate>Sun, 29 Nov 2009 10:55:16 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[Phishing]]></category>
		<category><![CDATA[Privacy]]></category>
		<category><![CDATA[scams]]></category>
		<category><![CDATA[Warnings and Alerts]]></category>
		<category><![CDATA[fake adverts]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=261</guid>
		<description><![CDATA[With the seasonal shopping season well underway, watch out for fake shopping sites and phishing emails trying to get your identity &#38; credit card details. A slightly different approach came into my inbox today which asked me to confirm the item in my shopping basket. Now I haven&#8217;t shopped with Littlewoods online but you can [...]]]></description>
			<content:encoded><![CDATA[<p><br />
With the seasonal shopping season well underway, watch out for fake shopping sites and phishing emails trying to get your identity &amp; credit card details.</p>
<p>A slightly different approach came into my inbox today which asked me to confirm the item in my shopping basket. Now I haven&#8217;t shopped with Littlewoods online but you can be sure that thousands of people have and the same scam will be applied to just about every well known online shopping site this season.</p>
<p>The email looks quite believable<br />
<a class="thickbox" rel="261" href="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_email.PNG" ><img class="alignnone size-medium wp-image-262" title="littlewoods_email" src="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_email-300x258.PNG" alt="littlewoods_email" width="300" height="258" /></a></p>
<p>The website if you follow the link looks exactly like the real Littlwoods shopping site Account sign in page <strong>EXCEPT</strong> that the real Littlewwoods or ALL reputable shopping sites will have a Padlock icon and the  site address will start with<strong> HTTPS</strong> and the address bar will turn green to show that you are on a secure site</p>
<p>This screenshot shows the fake site and I have blanked out the address for safety reasons<br />
<a class="thickbox" rel="261" href="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_web.PNG" ><img class="alignnone size-medium wp-image-263" title="littlewoods_web" src="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_web-300x231.PNG" alt="littlewoods_web" width="300" height="231" /></a></p>
<p>These show how a genuine site will appear in Internet Explorer 8 on left and Firefox on right. Both show the padlock icon and a green safe address bar. A genuine shopping site will always start <strong>HTTPS</strong> to show a secure site when you are asked to put in any details. The front page of the site might be a normal http:<br />
Unfortunately a lot of well known shopping sites haven&#8217;t yet signed up to the Extended Valuation green bar very secure system yet so watch for the closed padlock and HTTPS in the address bar to show a secure site. In Firefox browser the closed padlock is on the bottom right hand corner of the page, not in the browser address bar </p>
<table border="0">
<tbody>
<tr>
<td><a class="thickbox" rel="261" href="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_IE.PNG" ><img class="alignnone size-medium wp-image-264" title="littlewoods_IE" src="http://hijack-this.co.uk/wp-content/uploads/2009/11/littlewoods_IE-300x193.PNG" alt="littlewoods_IE" width="300" height="193" /></a></td>
<td><a class="thickbox" rel="261" href="http://hijack-this.co.uk/wp-content/uploads/2009/11/real_littlewoods.PNG" ><img class="alignnone size-medium wp-image-265" title="real_littlewoods" src="http://hijack-this.co.uk/wp-content/uploads/2009/11/real_littlewoods-300x232.PNG" alt="real_littlewoods" width="300" height="232" /></a></td>
</tr>
</tbody>
</table>
<p style="text-align: left;"><strong>I strongly recommend using <a href="http://www.roboform.com/php/land.php?affid=dvk01&amp;frm=frame17" target="_blank">ROBOFORM </a>which keeps all passwords in a secure encrypted database that only you (not a keylogger or malware) can access and use it to create safe secure passwords</strong></p>
<p><a href="http://www.roboform.com/php/land.php?affid=dvk01&amp;frm=frame17" target="_blank"><img src="http://www.roboform.com/affiliates/banners/728x90-warning3-free.gif" border="0" alt="RoboForm: Learn more..." width="728" height="90" /></a></p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2009%2F11%2Fbeware-of-fake-shopping-sites%2F&amp;title=Beware%20of%20fake%20shopping%20sites" id="wpa2a_10"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2009/11/beware-of-fake-shopping-sites/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Sun Java Runtime Environment Multiple Vulnerabilities</title>
		<link>http://hijack-this.co.uk/2009/11/sun-java-runtime-environment-multiple-vulnerabilities/</link>
		<comments>http://hijack-this.co.uk/2009/11/sun-java-runtime-environment-multiple-vulnerabilities/#comments</comments>
		<pubDate>Fri, 06 Nov 2009 11:54:06 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[Java]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[updates]]></category>
		<category><![CDATA[Warnings and Alerts]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=210</guid>
		<description><![CDATA[Sun Java Runtime Environment Multiple Vulnerabilities Affected: JDK and JRE 6 Update 16 and earlier JDK and JRE 5.0 Update 21 and earlier SDK and JRE 1.4.2_23 and earlier SDK and JRE 1.3.1_26 and earlier Description: Sun&#8217;s implementation of the Java Runtime Environment (JRE) and Java Web Start contains multiple vulnerabilities. A specially crafted Java [...]]]></description>
			<content:encoded><![CDATA[<p>Sun Java Runtime Environment Multiple Vulnerabilities<br />
Affected:<br />
JDK and JRE 6 Update 16 and earlier<br />
JDK and JRE 5.0 Update 21 and earlier<br />
SDK and JRE 1.4.2_23 and earlier<br />
SDK and JRE 1.3.1_26 and earlier</p>
<p>Description: Sun&#8217;s implementation of the Java Runtime Environment (JRE) and Java Web Start contains multiple vulnerabilities. A specially crafted Java application, an audio or image file or an applet could trigger one of these vulnerabilities, with consequences ranging from arbitrary code execution with the privileges of the current user to denials-of-service and security restriction bypass. Note that, depending upon configuration, Java applets embedded in web pages may be opened automatically upon the loading of the page. One of the error is that the update mechanism does not update JRE to the new version when running on non-English Windows versions. There are errors in decoding DER encoded data and the parsing of HTTP headers which might lead to memory exhaustion. There is an authentication bypass vulnerability in JRE while verifying HMAC digests. Multiple buffer overflow and integer overflow vulnerabilities have been reported in JRE while processing specially crafted audio and image files. There is a command execution vulnerability in JRE which could be triggered by a specially crafted web page. There is a flaw in the implementation of security model permissions in the Java Web Start Installer. Some technical details for some of these vulnerabilities are publicly available.</p>
<p>Status: Vendor not confirmed, no updates available. [edit] Updates are available</p>
<p>References:<br />
Zero Day Initiative Advisories<br />
<a href="http://www.zerodayinitiative.com/advisories/ZDI-09-076">http://www.zerodayinitiative.com/advisories/ZDI-09-076</a><br />
<a href="http://www.zerodayinitiative.com/advisories/ZDI-09-077">http://www.zerodayinitiative.com/advisories/ZDI-09-077</a><br />
 <a href="http://www.zerodayinitiative.com/advisories/ZDI-09-078">http://www.zerodayinitiative.com/advisories/ZDI-09-078</a><br />
<a href="http://www.zerodayinitiative.com/advisories/ZDI-09-079">http://www.zerodayinitiative.com/advisories/ZDI-09-079</a><br />
<a href="http://www.zerodayinitiative.com/advisories/ZDI-09-080">http://www.zerodayinitiative.com/advisories/ZDI-09-080</a><br />
Sun Security Advisories<br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-270476-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-270476-1</a><br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-270475-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-270475-1</a><br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-270474-1</a><br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-269870-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-269870-1</a><br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-269869-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-269869-1</a><br />
<a href="http://sunsolve.sun.com/search/document.do?assetkey=1-66-269868-1">http://sunsolve.sun.com/search/document.do?assetkey=1-66-269868-1</a><br />
Product Home Page<br />
<a href="http://java.sun.com">http://java.sun.com</a><br />
SecurityFocus BID<br />
<a href="http://www.securityfocus.com/bid/36881">http://www.securityfocus.com/bid/36881</a></p>
<p>for this DO NOT rely on check for updates in JAVA control panel BUT go to <a href="http://java.com/en/download/ie_manual.jsp?locale=en&amp;host=java.com:80">http://java.com/en/download/ie_manual.jsp?locale=en&amp;host=java.com:80</a></p>
<p>if you have a 64 bit version of windows, you need to install the standard 32 bit version AND the 64 bit version <a href="http://java.com/en/download/manual.jsp">http://java.com/en/download/manual.jsp</a></p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2009%2F11%2Fsun-java-runtime-environment-multiple-vulnerabilities%2F&amp;title=Sun%20Java%20Runtime%20Environment%20Multiple%20Vulnerabilities" id="wpa2a_12"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2009/11/sun-java-runtime-environment-multiple-vulnerabilities/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Mozilla fixes 16 flaws with Firefox 3.5.4:</title>
		<link>http://hijack-this.co.uk/2009/10/mozilla-fixes-16-flaws-with-firefox-3-5-4/</link>
		<comments>http://hijack-this.co.uk/2009/10/mozilla-fixes-16-flaws-with-firefox-3-5-4/#comments</comments>
		<pubDate>Thu, 29 Oct 2009 06:47:55 +0000</pubDate>
		<dc:creator>derek</dc:creator>
				<category><![CDATA[browser]]></category>
		<category><![CDATA[firefox]]></category>
		<category><![CDATA[mozilla]]></category>
		<category><![CDATA[updates]]></category>

		<guid isPermaLink="false">http://hijack-this.co.uk/?p=196</guid>
		<description><![CDATA[http://www.mozilla.org/security/known-vulnerabilities/firefox35.html#firefox3.5.4 Mozilla fixes 16 flaws with Firefox 3.5.4: http://www.computerworld.com/s/article/9140008/Mozilla_fixes_16_flaws_with_Firefox_3.5.4  Mozilla today patched 16 vulnerabilities in Firefox, 11 of them critical, as it updated the open-source browser to version 3.5.4.   The 11 critical Firefox 3.5 vulnerabilities were located in a variety ofn components, including Web worker calls, the GIF color map parser, the string-to-number converter, a [...]]]></description>
			<content:encoded><![CDATA[<p><a href="http://www.mozilla.org/security/known-vulnerabilities/firefox35.html#firefox3.5.4">http://www.mozilla.org/security/known-vulnerabilities/firefox35.html#firefox3.5.4</a></p>
<p>Mozilla fixes 16 flaws with Firefox 3.5.4:</p>
<p><a href="http://www.computerworld.com/s/article/9140008/Mozilla_fixes_16_flaws_with_Firefox_3.5.4">http://www.computerworld.com/s/article/9140008/Mozilla_fixes_16_flaws_with_Firefox_3.5.4</a></p>
<p> Mozilla today patched 16 vulnerabilities in Firefox, 11 of them critical, as it updated the open-source browser to version 3.5.4. </p>
<p> The 11 critical Firefox 3.5 vulnerabilities were located in a variety ofn components, including Web worker calls, the GIF color map parser, the string-to-number converter, a trio of third-party media libraries, and both the JavaScript and browser engines.</p>
<p><a class="a2a_dd a2a_target addtoany_share_save" href="http://www.addtoany.com/share_save#url=http%3A%2F%2Fhijack-this.co.uk%2F2009%2F10%2Fmozilla-fixes-16-flaws-with-firefox-3-5-4%2F&amp;title=Mozilla%20fixes%2016%20flaws%20with%20Firefox%203.5.4%3A" id="wpa2a_14"><img src="http://hijack-this.co.uk/wp-content/plugins/add-to-any/share_save_171_16.png" width="171" height="16" alt="Share"/></a></p>]]></content:encoded>
			<wfw:commentRss>http://hijack-this.co.uk/2009/10/mozilla-fixes-16-flaws-with-firefox-3-5-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

