2008/12/27更新:軟體版本更新為2.0.0.20,此為Firefox 2.x系列最後版本,以後不再更新,請改用最新版的Firefox 3.x版,Firefox 3.0.5請按這裡,Firefox 3.1請按這裡。
在Mozilla努力推廣最新版的Firefox 3.0瀏覽器的同時,原本的2.x版本還是沒放著不管,,
軟體名稱:Mozilla Firefox
軟體語言:繁體中文版
軟體版本:2.0.0.20
檔案大小:5.76MB
官方網站:http://moztw.org
軟體下載:Windows版、Mac OS X版、Linux版
Firefox 2.0.0.19更新項目: (原文網址)
- XSS vulnerabilities in SessionStore
- XSS and JavaScript privilege escalation
- Escaped null characters ignored by CSS parser
- Errors parsing URLs with leading whitespace and control characters
- Cross-domain data theft via script redirect error message
- XMLHttpRequest 302 response disclosure
- Additional XSS attack vectors in feed preview
- Information stealing via loadBindingDocument
- Crashes with evidence of memory corruption (rv:1.9.0.5/1.8.1.19)
更新項目:Fixed in Firefox 2.0.0.15
- MFSA 2008-33 Crash and remote code execution in block reflow
- MFSA 2008-32 Remote site run as local file via Windows URL shortcut
- MFSA 2008-31 Peer-trusted certs can use alt names to spoof
- MFSA 2008-30 File location URL in directory listings not escaped properly
- MFSA 2008-29 Faulty .properties file results in uninitialized memory being used
- MFSA 2008-28 Arbitrary socket connections with Java LiveConnect on Mac OS X
- MFSA 2008-27 Arbitrary file upload via originalTarget and DOM Range
- MFSA 2008-25 Arbitrary code execution in mozIJSSubScriptLoader.loadSubScript()
- MFSA 2008-24 Chrome script loading from fastload file
- MFSA 2008-23 Signed JAR tampering
- MFSA 2008-22 XSS through JavaScript same-origin violation
- MFSA 2008-21 Crashes with evidence of memory corruption (rv:1.8.1.15)
,延伸閱讀: