Advertisement
Promo

Online business Toolkit

Mozilla marks 10th birthday, warns of Firefox bug

Tom Espiner ZDNet.co.uk

Published: 24 Jan 2008 17:53 GMT

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

The Mozilla Foundation is celebrating what it regards as its 10th anniversary this week.

On 22 January, 1998, Netscape Communications Corporation announced its plans to make the source code for the Netscape Communicator client software available with free licensing on the internet. The Communicator 5 source code was made available on 31 March, 1998. The code became the basis of the Mozilla Suite, which comprises the Firefox web browser and the Thunderbird email application.

Mozilla, originally the codename for the Netscape Navigator browser code, became the name of both Mozilla's red lizard mascot and the open-source community that was created to develop the open-source Netscape suite.

The outgoing chief executive officer of Mozilla, Mitchell Baker, has asked the Mozilla community for ideas on how to celebrate Mozilla's 10th year. Mozilla.org, the organisation launched to co-ordinate Mozilla developers' efforts, will celebrate the event on 23 February.

Meanwhile, Mozilla's head of security, Window Snyder, warned on Tuesday of a flaw in Firefox's user interface, which is called "chrome". Following the notification of the flaw by vulnerability researcher Gerry Eisenhaur, Snyder confirmed on Tuesday that the flaw would affect users who had installed "flat" Firefox extensions — add-ons, such as Download Statusbar and Greasemonkey, that do not store files in a Java archive .

Insufficient security validation of input file names in the Firefox header lets an attacker order the browser to access files it is not supposed to be able to access, a technique known as directory traversal.

Mozilla has assigned a "low" severity rating to the flaw, and the vulnerability is being investigated by Firefox developers.

  • Email
  • Trackback
  • Clip Link
  • Print friendlyPrint with EPSON

Did you find this article useful?
9 out of 9 people found this useful


Full Talkback thread

0 comments

Company/Topic Alerts

Create a new alert from the list below:






Sentry Posts Blog

Campaigners criticise '£10bn NHS IT ov...

The National Health Service's flagship IT project has been criticised by a tax campaign group for running billions of pounds over budget. The NHS National Programme for IT (NPfIT)... More

Post a comment

Climate research centre compromised

One of the UK's leading climate change research centres has had a security breach. The Climate Research Unit at the University of East Anglia (UEA) suffered a compromise of information,... More

1 comment

Government web-monitoring plans on hol...

Government plans to compel ISPs to process and store details of all web communications have been put on hold until after the next election. The Home Office told ZDNet UK on Wednesday... More

1 comment

Video icon

Video

Google Chrome

Roundup: Full coverage of Google Chrome

The search giant has launched a beta of its own open-source browser, sending a clear challenge to Microsoft in the way it lets users work with applications More

Blog: Google Chrome has Microsoft's code inside, says MS manager

And furthermore, he says, that's a good thing... More

Blog: Google Chrome — nine things we've found since launch

Google must be very happy with the coverage Chrome has gathered. But it's not all good news... More


Skip Sub Navigation Links to CNET Brand Links

Help

Become part of the ZDNet community.

Newsletters