Audit Finds No Critical Flaws in Firefox Update System
#1
Quote:An audit commissioned by Mozilla for the Firefox update system revealed no critical vulnerabilities and the flaws rated "high severity" were not easy to exploit.

Experts at Germany-based X41 spent 27 days analyzing the Firefox Application Update Service (AUS), including its update signing protocol, client code, backend and other components. The audit involved a cryptographic review, fuzzing, pentesting, and manual code analysis.

Mozilla has already patched the serious vulnerabilities and is currently working on addressing the less severe issues and the side findings. The organization has made public the full report from X41 and opened the bug tracker where the patching progress can be monitored.

Source: https://www.securityweek.com/audit-finds...ate-system
[-] The following 1 user says Thank You to silversurfer for this post:
  • harlan4096
Reply


Messages In This Thread
Audit Finds No Critical Flaws in Firefox Update System - by silversurfer - 11 October 18, 15:38

Forum Jump:


Users browsing this thread: 2 Guest(s)
[-]
Welcome
You have to register before you can post on our site.

Username/Email:


Password:





[-]
Recent Posts
AirVPN
AirVPN Eddie Androi...jasonX — 06:00
AirVPN
AirVPN Suite versi...jasonX — 05:33
Surfshark VPN : Award-winning VPN servi...
SASE vs. VPNs: whi...jasonX — 05:23
Surfshark VPN : Award-winning VPN servi...
VPC vs. VPN: what’...jasonX — 03:05
HitmanPro.Alert 3.21.1 Build 2047 (stabl...
HitmanPro.Alert 3....harlan4096 — 11:43

[-]
Birthdays
Today's Birthdays
No birthdays today.
Upcoming Birthdays
avatar (51)steakelask
avatar (45)Termoplenka
avatar (51)Toligo

[-]
Online Staff
harlan4096's profile harlan4096
Administrator

>