Browser Update: Mozilla Releases Firefox 3.6.8

Mozilla has released an updated Firefox browser to make the current version 3.6.7.  This isn’t a big update as if only fixes one flaw: MFSA 2010-48, this update fixed the following problem:

Mozilla developer Daniel Holbert reported that the fix to the plugin parameter array crash that was fixed in Firefox 3.6.7 caused a crash showing signs of memory corruption. In certain circumstances, properties in the plugin instance’s parameter array could be freed prematurely leaving a dangling pointer that the plugin could execute, potentially calling into attacker-controlled memory.

If you are experiencing this problem, then you should update Firefox.  If you aren’t experiencing this problem, then I would wait until your next patch cycle for the installation of this update.

No tags for this post.

Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.