Mozilla Patches Its Patch

Just days after releasing 14 security updates to address bugs in Firefox, Mozilla has released a patch to fix one of its patches.

InformationWeek reports that Security Advisory 2010-48, which was issued to fix a plugin parameter array crash, actually caused a crash that showed indications of memory corruption. The security update states:

In certain circumstances, properties in the plugin instance's parameter array could be freed prematurely leaving a dangling pointer that the plugin could execute, potentially calling into attacker-controlled memory.

Comments

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Lines and paragraphs break automatically.
  • Allowed HTML tags: <b> <i>

More information about formatting options