<?xml version="1.0"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/">
<channel>
<title>Switched - Comments for Yet Another Security Flaw Hits Firefox 3.5 Web Browser</title>
<link>http://www.switched.com/2009/07/20/yet-another-security-flaw-hits-firefox-3-5-web-browser/</link>
<description>Switched Comments for Yet Another Security Flaw Hits Firefox 3.5 Web Browser</description>
<image>
<url>http://www.switched.com/media/feedlogo.gif</url>
<title>Switched</title>
<link>http://www.switched.com</link>
</image>
<language>en-us</language>
<copyright>Copyright 2012 Weblogs, Inc. The contents of this feed are available for non-commercial use only.</copyright>
<generator>Blogsmith http://www.blogsmith.com/</generator><item><title><![CDATA[Comments on Yet Another Security Flaw Hits Firefox 3.5 Web Browser]]></title><link>http://www.switched.com/2009/07/20/yet-another-security-flaw-hits-firefox-3-5-web-browser/</link><guid isPermaLink="true">http://www.switched.com/2009/07/20/yet-another-security-flaw-hits-firefox-3-5-web-browser/</guid><description><![CDATA[i'm stickin to safari]]></description><dc:creator><![CDATA[Heimbachae]]></dc:creator><pubDate>Jul 20th 2009 10:45AM</pubDate></item><item><title><![CDATA[Comments on Yet Another Security Flaw Hits Firefox 3.5 Web Browser]]></title><link>http://www.switched.com/2009/07/20/yet-another-security-flaw-hits-firefox-3-5-web-browser/</link><guid isPermaLink="true">http://www.switched.com/2009/07/20/yet-another-security-flaw-hits-firefox-3-5-web-browser/</guid><description><![CDATA["That flaw was patched last week, but now, just a few days later, another security hole has been found. It's called the "Unicode Data Remote Stack Buffer Overflow Vulnerability," and, as of now there's no fix from Mozilla."<br><br>This is absolutely wrong. It is neither a stack buffer overflow nor an exploitable crash. <br><br>" Should you be worried? Probably not, as it's unlikely that more than a handful of sites are using this exploit, and they're surely relegated to the darkest corners of the Web."<br><br>There is no exploit. The crash is not exploitable. Please read Mozilla's official announcement explaining this: <br><br><a href="http://blog.mozilla.com/security/2009/07/19/milw0rm-9158-stack-overflow-crash-not-exploitable-cve-2009-2479/" rel="nofollow">http://blog.mozilla.com/security/2009/07/19/milw0rm-9158-stack-overflow-crash-not-exploitable-cve-2009-2479/</a>]]></description><dc:creator><![CDATA[asadotzler]]></dc:creator><pubDate>Jul 20th 2009 12:12PM</pubDate></item></channel></rss>
