Firefox 2.0.0.8 does not Close all the Gaps and Adds Some New Ones
The update for the Mozilla Firefox browser to version 2.0.0.8 does not remove all of the vulnerabilities disclosed in the changelog, and the update introduces some new bugs.
A hacker group referring to itself as the "Hacktivisten" has demonstrated that a gap supposedly closed by the update to version 2.0.0.8 is still open. Although the exploit failed to crash Firefox 2.0.0.8 in a test, the hackers were able to suppress code components via the “View Page Source Code” function. Users would thus be unable to detect malicious code despite viewing the source code for a site. The exploit is capable of crashing older versions of the browser. The optional script blocker extension for Firefox prevents the attack, and also makes sure that source code displays properly.
The update added a couple of new issues. As the developers disclosed on their website, a couple of bugs were introduced along with the 200 improvements and bugfixes. For example, Cascading Style Sheets are not corretly interpreted in some cases (Bug 400406). Additionally, some extensions will not work with version 2.0.0.8 (Bug 396695). This problem is easy to fix by deleting a couple of files. The third bug, number 400421, is evidenced by incorrect handling of image maps. Two other bugs only affect Windows systems.
Despite the setbacks, an update to the latest version of Firefox is still recommended, as the update removes various security issues. The developers have already announced a new release: version 2.0.0.9 is scheduled for next week. Normally, six to eight weeks pass between Firefox releases. This cycle is not normally changed except for critical vulnerabilities.
Issue 272/2023
Buy this issue as a PDF
Subscribe to our Linux Newsletters
Find Linux and Open Source Jobs
Subscribe to our ADMIN Newsletters
News
-
Mageia 9 Beta 2 is Ready for Testing
The latest beta of the popular Mageia distribution now includes the latest kernel and plenty of updated applications.
-
KDE Plasma 6 Looks to Bring Basic HDR Support
The KWin piece of KDE Plasma now has HDR support and color management geared for the 6.0 release.
-
Bodhi Linux 7.0 Beta Ready for Testing
The latest iteration of the Bohdi Linux distribution is now available for those who want to experience what's in store and for testing purposes.
-
Changes Coming to Ubuntu PPA Usage
The way you manage Personal Package Archives will be changing with the release of Ubuntu 23.10.
-
AlmaLinux 9.2 Now Available for Download
AlmaLinux has been released and provides a free alternative to upstream Red Hat Enterprise Linux.
-
An Immutable Version of Fedora Is Under Consideration
For anyone who's a fan of using immutable versions of Linux, the Fedora team is currently considering adding a new spin called Fedora Onyx.
-
New Release of Br OS Includes ChatGPT Integration
Br OS 23.04 is now available and is geared specifically toward web content creation.
-
Command-Line Only Peropesis 2.1 Available Now
The latest iteration of Peropesis has been released with plenty of updates and introduces new software development tools.
-
TUXEDO Computers Announces InfinityBook Pro 14
With the new generation of their popular InfinityBook Pro 14, TUXEDO upgrades its ultra-mobile, powerful business laptop with some impressive specs.
-
Linux Kernel 6.3 Release Includes Interesting Features
Although it's not a Long Term Release candidate, Linux 6.3 includes features that will benefit end users.