CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / december, 2005 / Denial of service in Firefox 

Denial of service in Firefox

Denial of service in Firefox

Madrid, December 13, 2005 - Several sources -including The Register-, have reported a vulnerability in version 1.5 of the Mozilla Firefox browser, which could be used by malicious users to freeze the application.

This flaw lies in the handling of history information. This vulnerability can be exploited if an attacker manages to fill the history file with junk, through a malicious website (in which a large title is generated using JavaScript, for example). The browser of a user that visited this website would freeze whenever the user tried to access it. To recover normal functioning, the ´history.dat´ file would need to be deleted.

A possible workaround is to configure Firefox to clear the history information when closing the browser, although this could affect other functions of the browser.

Oxygen3 24h-365d
by Panda Software

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel