This article originally appeared in TidBITS on 2010-04-02 at 10:31 a.m.
The permanent URL for this article is: http://db.tidbits.com/article/11145
Include images: Off

Firefox 3.6.3

by Doug McLean

Mozilla's latest version of Firefox [1] addresses a critical security flaw that was recently discovered at the 2010 Pwn2Own contest by security researcher Nils of MWR InfoSecurity. The flaw, which existed only in version 3.6 and later, was related to memory corruption via "re-use of a freed object due to scope confusion," and could have led to an attacker running arbitrary code on a victim's computer. (Free, 19 MB)

[1]: http://www.mozilla.com/en-US/firefox/upgrade.html