English | VietNam
Home
About Us
Press Center
Products
Customers
Security Blog
Bkav Forum
Contact Us
Buy Online
Downloads
Virus, Spyware, Rootkit, Security
Vulnerability in processing marquee tag causes Firefox to crash
10:11:11, 09/03/2010

1. General information

In early March, a piece of php code which causes Firefox to crash was distributed on the Internet. When users use Firefox to visit websites that contain this code, their current browser session will immediately be shut down, and they have to restart Firefox. This hole may cause some trouble but does not have much effect on users' security.

Release Date

Affected software

Severity

March 01, 2010

Mozilla Firefox version 3.5, 3.6

Normal


2. Technical details

Marquee tag is a non-standard html tag; it allows the displayed html content to scroll left, right, up or down automatically. To process the tag, Firefox does not use normal tag processing module, but xul module.

To be specific, while processing marquee tag, xul module calls recursive function; this function only returns when catching </marquee> closing tag. Thus, the failure to manage the maximum pairs of tag marquee causes recursive function call to take too much memory on stack. When the number of marquee tag pairs is high enough to occupy all stack memory, the program (Firefox) crashes, ending the work session.

Exploiting this vulnerability, hacker may create websites containing malicious code and seduce users to access. Visiting these websites then would cause a lot of trouble to users.

3. Solution

Mozilla has not released any patch for this vulnerability. To check for Firefox latest patches, on menu bar, click ?Help?, then choose ?Check for Updates?.

Analyst: Mai Xuan Cuong


  Other news:
  • Windows 7: Secure but still require users’ awareness
  • 39,000 computers in Vietnam lose network connection upon virus disinfection
  • Google exploited to spread virus
  • Virus posing as Microsoft to delete users’ data has emerged
  • Metamorphic virus Sality rages because of Shortcut vulnerability
  • Vulerability in Vbulletin 3.8.4 and 3.8.5
  • Critical vulnerability in vBulletin 3.8.6
  • Microsoft Security Bulletin for March 2010
  • Security patches for January 2010
  • Microsoft Security Bulletin for December 2009

     Other news  
        
     News in focus
    Bkav: Want the world to know who we are

    Data of more than 85,000 computers in Vietnam has been stolen

    “We are underestimating cyber warfare”

    Safe Run Technology and Bkav 2011

    How your Yahoo! Accounts are stolen

    Bkav 2011 launching ceremony

    7,500 computers in Vietnam infected with “express” virus

    Bkav Enterprise deployed at Daewoo Hotel

    The definition of “filthy attack” does not exist

    Drop virus, swindle unlicensed Windows users for money

    Read more >>

      © 2010 Bkis - Internet Security
      Hitech Building, 1A Dai Co Viet Str., Hai Ba Trung Dist., Ha Noi, Vietnam  * Contact us
    © Please specify "source: Bkis" when using any information from this website.