{"id":799466,"date":"2022-08-31T10:03:28","date_gmt":"2022-08-31T10:03:28","guid":{"rendered":"https:\/\/telecomlive.in\/web\/2022\/08\/31\/cert-in-warns-about-bugs-in-mozilla-firefox-that-can-compromise-devices\/"},"modified":"2022-08-31T10:03:28","modified_gmt":"2022-08-31T10:03:28","slug":"cert-in-warns-about-bugs-in-mozilla-firefox-that-can-compromise-devices","status":"publish","type":"post","link":"https:\/\/telecomlive.in\/web\/2022\/08\/31\/cert-in-warns-about-bugs-in-mozilla-firefox-that-can-compromise-devices\/","title":{"rendered":"CERT-In warns about bugs in Mozilla Firefox that can compromise devices"},"content":{"rendered":"<p>After warning users about bugs in Google Chrome for desktop, the Indian Computer Emergency Response Team (CERT-In) has now cautioned against multiple vulnerabilities in Mozilla Firefox products that can let hackers compromise devices and systems.<\/p>\n<p>The bugs in Mozilla Firefox browser could allow a remote attacker to bypass security restrictions, execute arbitrary code and cause denial of service attack on the targeted system, CERT-In said in its latest advisory.<\/p>\n<p>&#8216;These vulnerabilities exist in Mozilla Firefox due to abuse of XSLT error handling, cross-origin iframe referencing an XSLT document&#8230; that results in a use-after-free error and memory safety bugs within the browser engine,&#8217; explained the cyber agency.<\/p>\n<p>A remote attacker could exploit these vulnerabilities by convincing a victim to open a specially-crafted web request.<\/p>\n<p>CERT-In, which comes under the IT Ministry, advised users to update to the latest Mozilla Firefox versions.<\/p>\n<p>CERT-In also found a vulnerability in open source coding platform Drupal which could allow an attacker to bypass security restrictions on the targeted system.<\/p>\n<p>&#8216;Successful exploitation of this vulnerability could allow an attacker to bypass security restrictions (leak valid payment details and accept invalid payment details) on the targeted system,&#8217; it warned.<\/p>\n<p>Last week, the cyber agency had warned users about multiple vulnerabilities in Google Chrome for desktop that could let threat actors gain access to their computers.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>After warning users about bugs in Google Chrome for desktop, the Indian Computer Emergency Response Team (CERT-In) has now cautioned against multiple vulnerabilities in Mozilla Firefox products that can let hackers compromise devices and systems. The bugs in Mozilla Firefox browser could allow a remote attacker to bypass security restrictions, execute arbitrary code and cause denial of service attack on the targeted system, CERT-In said in its latest advisory. &#8216;These vulnerabilities exist in Mozilla Firefox due to abuse of XSLT error handling, cross-origin iframe referencing an XSLT document&#8230; that results in a use-after-free error and memory safety bugs within the [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[7],"tags":[],"class_list":["post-799466","post","type-post","status-publish","format-standard","hentry","category-it-2"],"acf":[],"_links":{"self":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/799466","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/comments?post=799466"}],"version-history":[{"count":0,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/posts\/799466\/revisions"}],"wp:attachment":[{"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/media?parent=799466"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/categories?post=799466"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/telecomlive.in\/web\/wp-json\/wp\/v2\/tags?post=799466"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}