It isn't available on the Main Firefox Site, and no Release Notes yet. My Firefox 2.0 Update alerted me to the 1.5.0.8 update.
UserAgent: Mozilla/5.0 (Windows; U; Win98; en-US; rv:1.8.1) Gecko/20061010 Firefox/2.0
Moderators: Antony, Edward, profman, Ramona

1) The bundled Network Security Services (NSS) library contains an incomplete fix for the RSA signature verification vulnerability reported in MFSA 2006-60.
2) An error exists within the handling of Script objects. This can potentially be exploited to execute arbitrary JavaScript bytecode by modifying already running Script objects.
3) Some unspecified errors in the layout engine and memory corruption errors in the JavaScript engine can be exploited to crash the application and may allow execution of arbitrary code.
4) An unspecified error within XML.prototype.hasOwnProperty can potentially be exploited to execute arbitrary code.


...; rv:1.8.0.8) Gecko/20061025 Firefox/1.5.0.8


Firefox 2.0 is a new feature release, not a security release. Some of you may have rushed to it.humpd wrote:This may be a "dumb" question but, why continue to develop the FF 1.5+ series when FF 2.0 is out?





Note: Firefox 1.5.0.x will be maintained with security and stability updates until April 24, 2007.
All users are strongly encouraged to upgrade to Firefox 2.

That's only about 6 months.DJGM wrote:according that page, Firefox 1.5.0.x will no longer be updated after April 24th.



Return to Firefox, SeaMonkey and Netscape
Registered users: Antony, Google [Bot], Yahoo [Bot]
| [SillyDog701 home] [Netscape] [download NS] [MozInfo701] [MacCentre701] [Feedback] [Search] [Sitemap] All messages posted in this forum do not necessarily represent SillyDog701. This forum is operated by Antony Shen. All rights reserved. Copyright Notice. Privacy Statement. |