Mozilla patches 12 Firefox flaws
Browser version 44 fixes three critical vulnerabilities
Mozilla has patched several vulnerabilities putting users of its Firefox browser at risk of cyber attacks.
The open source firm released version 44 of its browser on Tuesday, and issued an update listing 12 fixes on its security advisory board.
Three of those are listed as 'critical' vulnerabilities, and concern unsafe memory manipulation, buffer overflow in WebGL, and other memory safety hazards.
Another two were classified as high', which could involve an attack harvesting data from a user during their regular browsing activity. These involved address bar spoofing attacks, by which an attack could create a fake address bar when a user opened a new tab, and some code errors in the browser's Network Security Services.
The remaining vulnerabilities were listed as moderate', and included minor performance delays for file downloads on OS X and a missing delay following user click events.
Earlier this month, Firefox issued a blog update about issues some users have had with devices such as security scanners and antivirus products, after Firefox rejected sites using the SHA-1 certificate, which is in the process of being phased out.
Firefox updated its private browsing functions last year to make it simpler for users to stop companies tracking their browse usage.
Sign up today and you will receive a free copy of our Future Focus 2025 report - the leading guidance on AI, cybersecurity and other IT challenges as per 700+ senior executives
-
What does modern security success look like for financial services?Sponsored As financial institutions grapple with evolving cyber threats, intensifying regulations, and the limitations of ageing IT infrastructure, the need for a resilient and forward-thinking security strategy has never been greater
-
Yes, legal AI. But what can you actually do with it? Let’s take a look…Sponsored Legal AI is a knowledge multiplier that can accelerate research, sharpen insights, and organize information, provided legal teams have confidence in its transparent and auditable application
-
Spanish spyware outfit uncovered, develops exploits for Windows, Chrome, and FirefoxNews Google was only able to discover the company after an anonymous submission was made to its Chrome bug reporting programme
-
Firefox 95 boosts protection against zero-day attacksNews Mozilla's browser now takes a more granular approach to walling off code
-
Mozilla to end support for Firefox Lockwise password managerNews Replacement service already lined up as browser specialist continues to streamline business
-
Firefox available on Microsoft Store for first timeNews Gecko-based browser arrives after Microsoft removes restrictions
-
Mozilla to cut 250 jobs as part of major coronavirus restructureNews The reorganisation has been made so the company can become faster, more innovative, and find more revenue streams
-
Why I’m leading a browser double lifeOpinion There are benefits to using more than one browser
-
Mozilla re-hires veteran Mitchell Baker to serve as CEONews The interim chair and CEO formally rejoins the organisation after Chris Beard stepped down in December 2019
-
Mozilla fixes two Firefox zero-days being actively exploitedNews Critical vulnerabilities allow attackers to execute arbitrary code or trigger crashes