On The Insider: Britney's Bikini-Clad Top 10
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 1 of 21:
Next »
Second best alternative
On Internet Explorer (Vista/7) Flash executes
inside the sandbox. Thus a Flash exploit
will still be faced with a significant barrier
before its able to run code as the logged-in
user.

Not so on Firefox. There is no sandbox and
Flash executes as the logged-in user. Any Flash
which allow code execution will be able to run
code as the logged-in user.

This nudging is a diversion. Mozilla should get
their act together and implement a proper
sandbox. More Flash vulns will follow, other
plugins will be (are already) vulnerable. Until
a sandbox is in place they will all carry the
risk of local user execution.
Posted by: honeymonster   Posted on: 09/17/09 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

Second best alternative  honeymonster | 09/17/09
RE: Firefox Flash patch nudge working, but...  skyman375 | 09/17/09
The problem with setting applications to update by default  mhenriday | 09/17/09
The thing is...  Cayble | 09/17/09
Exactly  tonymcs@... | 09/17/09
Basic confusion about plugins  bandersnatch42vt | 09/18/09
95% of users do not realize there are alternatives to Microsoft  bcgumbert | 09/19/09
Ummm, it does, actually.  bandersnatch42vt | 09/18/09
RE: Firefox Flash patch nudge working, but...  zlgtr | 09/17/09
RE: Firefox Flash patch nudge working, but...  wkulecz | 09/17/09
Flash has its uses...  Mike (not Cox) | 09/17/09
It still hogs memory  editorsteve | 09/17/09
Firefox 3.x  balaknair | 09/17/09
Something to think about in reguards to you Memory hog issue  bcgumbert | 09/19/09
Or...  Greenknight_z | 09/20/09
RE: Firefox Flash patch nudge working, but...  Wendykf06 | 09/18/09
FlashBlock/Noscript  janitorman | 09/18/09
Can't turn back the clock...  bandersnatch42vt | 09/18/09
I beg to differ  Greenknight_z | 09/20/09
RE: Firefox Flash patch nudge working, but...  bcgumbert | 09/19/09
RE: Firefox Flash patch nudge working, but...  Stephfie | 09/19/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement