By using this site, you agree to the Privacy Policy and Terms & Conditions.
Accept
Okay.ngOkay.ngOkay.ng
Font ResizerAa
  • News
    • Politics
  • Entertainment
  • Business & Economy
  • Sport
  • Tech
Reading: High Vulnerability Detected In Mozilla Firefox. (Patch Released).
Share
Font ResizerAa
Okay.ngOkay.ng
  • News
  • Entertainment
  • Business & Economy
  • Sport
  • Tech
Search
  • News
    • Politics
  • Entertainment
  • Business & Economy
  • Sport
  • Tech
Follow US
  • About Okay.ng
  • Advertising on Okay.ng
  • Contact Okay.ng
  • Careers
  • Meet the Team behind Okay.ng
  • Ownership and Funding of Okay.ng
  • Editorial Principles at Okay.ng
© OKN MEDIA PUBLISHING 2022 - All rights reserved
FeaturedTech

High Vulnerability Detected In Mozilla Firefox. (Patch Released).

Damilola A.
By Damilola A.
Published: August 10, 2015
Share
2 Min Read
SHARE

firefox_changed_ui

Mozilla is warning users about a vulnerability in its Firefox Web browser that could allow attackers to steal information from their computer. The browser-maker urges users to update Firefox to the latest available version — v39.0.3 or above – to protect their system from the said vulnerability.

While by default Firefox automatically updates itself, those who have the setting off will have to manually update via the ‘About Firefox’ setting in the Help tab. Earlier this week, the company was notified by security researcher Cody Crews about a malicious ad on a Russian news portal that was exploiting a vulnerability in Firefox’s PDF Viewer, a built-in feature. The exploit seeks sensitive files on the victim’s computer and uploads it to a suspicious server reportedly located in Ukraine.

Versions of Firefox that don’t support PDF Viewer including Firefox for Android client aren’t vulnerable to the exploit. Firefox’s Mac client is also not affected. “The vulnerability comes from the interaction of the mechanism that enforces JavaScript context separation (the ‘same origin policy’) and Firefox’s PDF Viewer,” wrote Mozilla security chief Daniel Veditz.

- Advertisement -

“The vulnerability does not enable the execution of arbitrary code but the exploit was able to inject a JavaScript payload into the local file context. This allowed it to search for and upload potentially sensitive local files.”

In the blog post, Veditz also notes that the exploit looks for subversion, s3browser, Firezilla, and libpurple configuration files on the Windows systems. On Linux, the payload checks global configuration files in the /etc directory. It also looks into .bashhistory, .mysqlhistory, .pgsql_history, and .ssh configuration files and keys.

Veditz says that people who use ad-blocking tools might not be affected with the vulnerability either, though it isn’t too sure about that. Regardless, you would want to update your Firefox Web browser to the latest version.

Stay Updated on the Go with Our Latest News—Join Our WhatsApp Channel Now!
TAGGED:mozillaa vulnerabilitypatch
Share This Article
Facebook Whatsapp Whatsapp Telegram Email Copy Link Print
ByDamilola A.
Entertainment News Reporter
Follow:
Damilola is a dedicated entertainment writer for Okay Nigeria (Okay.ng). He joined the platform with the aim of using his experience in the Entertainment industry to share wonderful articles in this field. Dammy is a die-hard fan of Wizkid.
Previous Article 14 Dead In Abakaliki Road Accident.
Next Article Twitter Unveils New Smileys For English Premier League.

Connect with Okay on Social

FacebookLike
XFollow
InstagramFollow
TelegramFollow

Dollar/Naira Rates

Okay.ng Logo

Parallel Market Rates

USD
Buy₦1,550.00
Sell₦1,565.00
GBP
Buy₦1,760.00
Sell₦1,790.00
EUR
Buy₦2,135.00
Sell₦2,170.00

Updated: 12 hours ago

Displayed rates are for informational purposes only and are subject to change.

Quick Converter

0.00
ShareShareShare

Rates are for informational purposes only.

Okay.ng Logo Parallel Market Rates
USD
Buy
Sell
GBP
Buy
Sell
EUR
Buy
Sell
| okay.ng
- Advertisement -
- Advertisement -
Ad imageAd image
- Advertisement -
Ad imageAd image

Recent Posts

Tax Reforms committee
Nigeria’s Tax Reform Journey Continues, Says Committee Chairman Taiwo Oyedele
Economy
MTN Mega Billion Promo: How Nigerians Are Winning Big
Partners
As Nigerian Banks Resume Naira Debit Card International Transactions: Limits You Should Know
News
Former Nigerian Army Chief Advocates for Compulsory Military Training
News
NNPP Declares Rabiu Kwankwaso Will Not Contest 2027 Presidency on Its Platform
Politics Top stories
- Advertisement -
Ad imageAd image

You May Also Like

NSA Nuhu Ribadu
Security

Tinubu Administration Making Headway Against Nigeria’s Security Challenges, NSA Ribadu Affirms

Oluwadara Akingbohungbe
Oluwadara Akingbohungbe
July 5, 2025
Politics

Aregbesola Warns ADC Supporters Against Insults, Urges Fact-Based Engagement with APC

Muhammad A. Aliyu
Muhammad A. Aliyu
July 5, 2025
International

President Bola Tinubu Arrives in Brazil for BRICS Summit to Strengthen Global South Cooperation

Oluwadara Akingbohungbe
Oluwadara Akingbohungbe
July 5, 2025
Okay.ngOkay.ng
Follow US
© OKN MEDIA PUBLISHING 2025 - All rights reserved
  • About Okay.ng
  • Advertising on Okay.ng
  • Contact Okay.ng
  • Careers
  • Meet the Team behind Okay.ng
  • Ownership and Funding of Okay.ng
  • Editorial Principles at Okay.ng
adbanner
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?