
Java has always been the problem child in the family of web browsing. Tons of exploits, and lets not even get into performance issues. Java continues its nuisance in FireFox. Mozillanow has some egg on their face as their two week old Firefox 3.5 has been identified with a remote execute exploit.
Mozilla is warning users and administrators of a critical JavaScript flaw in its Firefox 3.5 browser.
The company said that the problem exists in the browser’s JavaScript tool within a component called ‘just in time’ (JIT). If exploited, the vulnerability could allow an attacker to remotely execute code on a targeted system.
Mozilla further warned that a working exploit has been publically released, increasing the risk of attacks occurring in the wild.
A Firefox security alert offers instructions on how to temporarily disable the JIT component through the browser’s about:config menu. Doing so will slow JavaScript performance, however.
(Via V3)