Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search

Eugene

(61,896 posts)
Wed Jun 19, 2019, 12:17 AM Jun 2019

Update your Firefox browser now, there's an emergency patch you'll want

Source: The Verge

Update your Firefox browser now, there’s an emergency patch you’ll want

Hackers are actually exploiting this zero-day flaw, a researcher warns

By Sean Hollister Jun 18, 2019, 5:44pm EDT

Are you running Firefox version 67.0.3 or Firefox ESR 60.7.1? If the answer is “no,” or you’re not sure, maybe just update your web browser now. Firefox maker Mozilla is warning (via ZDNet) that the browser has a zero-day flaw that’s actively being exploited in the wild — you don’t see that every day — and it has issued an emergency patch that can let you plug that hole right now.

Here’s the full description of the issue:

A type confusion vulnerability can occur when manipulating JavaScript objects due to issues in Array.pop. This can allow for an exploitable crash. We are aware of targeted attacks in the wild abusing this flaw.

Updating Firefox can be as easy as restarting the browser, though you can also tap the hamburger icon on the upper-right hand corner, type “Update” into the search box and hit that “Restart to update Firefox” button to be sure.

-snip-


Read more: https://www.theverge.com/2019/6/18/18684272/firefox-zero-day-flaw-browser-attacks-crypto-patch

______________________________________________________________________

Related:
Mozilla Foundation Security Advisory 2019-18 (Mozilla)
Mozilla patches Firefox zero-day abused in the wild (ZDNet)
10 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
Update your Firefox browser now, there's an emergency patch you'll want (Original Post) Eugene Jun 2019 OP
I think 67.0.3 fixed it Lithos Jun 2019 #1
Yeah, message is a bit unclear ... 67.0.3 is what you WANT to be updated to mr_lebowski Jun 2019 #2
thank you nt deek Jun 2019 #3
I GUESS I'LL DO IT. i have an old edition cuz i didn't like what they did to the newer version trueblue2007 Jun 2019 #4
Hamburger icon? AllyCat Jun 2019 #5
Upper right-hand side, three horizontal lines. phylny Jun 2019 #8
Ohhhh....thanks. AllyCat Jun 2019 #10
Thanks. NT Blecht Jun 2019 #6
Click, Help and then About LittleGirl Jun 2019 #7
It's Time to Switch to a Privacy Browser PDittie Jun 2019 #9
 

mr_lebowski

(33,643 posts)
2. Yeah, message is a bit unclear ... 67.0.3 is what you WANT to be updated to
Wed Jun 19, 2019, 12:38 AM
Jun 2019

If you're behind that number, you should update.

And if you're quite a bit behind that, you may have to restart a few times.

To see where you're at, version-wise, hit the hamburger, options, then scroll down to Firefox Update section.

LittleGirl

(8,287 posts)
7. Click, Help and then About
Wed Jun 19, 2019, 02:39 AM
Jun 2019

tells you what version you're using too. There's an update button there too.
Thanks for the heads up!

PDittie

(8,322 posts)
9. It's Time to Switch to a Privacy Browser
Wed Jun 19, 2019, 08:36 AM
Jun 2019
There's a new battleground in the browser wars: user privacy. Firefox just made its Enhanced Tracking Protection a default feature, Apple continues to pile privacy-focused features into its Safari browser, and people are more aware than ever before of the sort of information they can reveal every time they set a digital footprint on the web.

If you want to push back against online tracking, you've got several options to pick from when choosing a default browser. These are the browsers that put user privacy high on the list of their priorities.


https://www.wired.com/story/privacy-browsers-duckduckgo-ghostery-brave/
Latest Discussions»General Discussion»Update your Firefox brows...