WORMS, ACTIVE EXPLOITS, VULNERABILITIES, AND PATCHES --Flaws in Mozilla Suite, Firefox
(18 April 2005)
Security flaws in the Mozilla Suite and Firefox browser could allow the installation of malicious code or the theft of personal data. Most of the vulnerabilities are a result of the way applications handle JavaScript. All versions of Mozilla Suite earlier than 1.7.7 are vulnerable as are all versions of Firefox earlier than 1.0.3.
http://news.zdnet.com/2102-1009_22-5674883.html?tag=printthis[Edutor's Note (Pescatore): This month points out why the two browser approach (IE and Mozilla or Firefox) is a real problem - both require patching this month. It also points out how often handling things like ActiveX controls and JavaScript is done badly.]
Patchuri:
http://www.mozilla.org/security/