Firefox 1.0.7 Fixes Several Critical Vulnerabilities; Recommended Upgrade火狐1.0.7修補程序的幾個關鍵的脆弱性;建議升級
Firefox 1.0.7 is a security and stability release.火狐1.0.7是一個安全和穩定的釋放。 It is strongly recommend that all users upgrade to this latest version.這是強烈建議所有用戶升級到這個最新的版本。
This version includes several security and stability fixes, including a fix for a reported buffer overflow vulnerability and a fix for a Linux shell command vulnerability.此版本包括幾個安全與穩定的修復,包括修復據報導,緩衝區溢出漏洞並修復了一個為Linux的Shell命令的脆弱性。 Details below.下面詳細說明。
Specific changes in Firefox 1.0.7具體變化在Firefox 1.0.7
- Fix for a potential buffer overflow vulnerability when loading a hostname with all soft-hyphens修復一個潛在的緩衝區溢出漏洞,當加載的主機與所有軟連字符
- Fix to prevent URLs passed from external programs from being parsed by the shell (Linux only)修復程序,以防止網址,通過從外部程序被解析,由殼牌( Linux的唯一)
- Fix to prevent a crash when loading a Proxy Auto-Config (PAC) script that uses an “eval” statement修復程序,以防止碰撞時,加載代理自動配置(委員會)的腳本使用“ eval ”聲明
- Fix to restore
InstallTrigger.getVersion()for Extension authors修復恢復installtrigger.getversion ( )為擴展作者 - Other stability and security fixes其他的穩定性和安全性修正 : :
- MFSA 2005-59 (High) mfsa 2005-59 (高) - Command-line handling on Linux allows shell execution -命令行處理L inux的允許殼牌執行
- MFSA 2005-58 (Critical) mfsa 2005-58 (關鍵) - Firefox 1.0.7 / Mozilla Suite 1.7.12 Vulnerability Fixes -火狐1 .0.7/對M ozillaS uite1 .7.12漏洞修復
- MFSA 2005-57 (Critical) mfsa 2005-57 (關鍵) - IDN heap overrun using soft-hyphens -印度尼西亞的堆積滿溢使用軟連字符
You can download您也可以下載 Firefox 1.0.7火狐1.0.7 here這裡 . 。
The known issues are: 已知的問題是:
All Systems 所有系統
* Prior to installing Firefox 1.0.7, please ensure that the directory you’ve chosen to install into is clean and doesn’t contain any previous Firefox installations. *之前,必須先安裝的Firefox 1.0.7 ,請確保該目錄您選擇安裝到的是清潔和不包含任何以前的Firefox設施。
* If you install Firefox on a multi-user system in an area in which there is restricted access privileges, you must run Firefox as a user with access to that location upon installation so that all initial startup files are generated. *如果您安裝了Firefox的一個多用戶系統在在這方面是有限制的存取權限,則必須運行Firefox作為一個用戶訪問到該位置後,安裝,使所有的初步啟動文件所產生的。 If this is not done, when a user without write access to the install location attempts to start Firefox, they will not have sufficient privileges to allow Firefox to generate the initial startup files it needs to.如果不這樣做,當用戶沒有寫入權限的安裝位置的企圖開始Firefox的,他們不會有足夠的特權,讓Firefox的產生最初的啟動文件,它需要。
* When upgrading, all your Extensions and Themes will be disabled. *升級時,您所有的擴展和主題將被禁用。 This is not an issue, but it may appear to be one (hence its listing here).這是不是一個問題,但它可能顯示為1 (因此其港上市) 。 For rationale, see “Extension and Themes” above.為理由,見“擴展和主題”以上。
* Software Update does not request proxy authentication and will fail if you are behind a proxy server. *軟件更新不要求代理身份驗證和會失敗,如果你是背後的代理服務器。 (bug) The workaround is to visit a web page in the browser and log in to the proxy server and then perform Software Update. (錯誤)替代是訪問一個網頁在瀏覽器並登錄到代理服務器,然後執行軟件更新。
* Software Update will not work if Firefox is installed to a location that you do not have write access to, since Software Update needs to replace or create files in this location. *軟件更新將不會工作,如果Firefox是安裝到某個位置,你沒有寫入權限,因為軟件更新的需要,以取代或建立檔案,在這個位置。
* The Help documentation refers to “Single Window Mode” options regarding “Force links opened in new windows to open in [New Tab, Same Tab].” This function was disabled at the last minute due to problems we were experiencing with it, so ignore this section of Help. *幫助文檔是指“單一窗口模式”選項就“武力打開鏈接在新窗口打開在[新標籤,同時標籤] ”這個功能被停用,在最後一分鐘,由於問題,我們正在經歷有了它,因此,忽略這一段的幫助。 To re-enable the Single Window Mode options (at your own risk - there may be crashes), use the Configuration Console (accessed by entering “about:config” in the Location bar and pressing Enter) to set browser.tabs.showSingleWindowModePrefs to true.重新啟用單一窗口模式選項(您自己承擔風險-有可能崩潰) ,使用配置控制台(存取進入“關於:配置” ,在位置的酒吧和緊迫進入)設置,以b rowser.tabs.showsinglewindowmodeprefs正確的。Windows 在Windows
* On Windows 2000 systems, some users may experience a crash on exit of the browser after viewing a page that calls the Windows Media Player 9 plug-in. *對Windows 2000系統,有些用戶可能會遇到撞車就退出瀏覽器後,查看網頁調用Windows Media Player 9的外掛程式。 If you experience this, make sure you are using the newest version of the Java plug-in, greater than Java 1.5.如果您的經驗,這一點,請確保您使用最新版本的Java插件中,大於1.5的Java 。 Older versions of the Java plug-in may conflict with Windows Media Player 9 in Firefox.舊版本的Java插件在5月的衝突與Windows Media Player 9月在Firefox 。
* When installing as a restricted access user on a shared machine into a location that you can write to, there may still be negative side effects (default browser/other keys not being set correctly). *安裝時,作為一個限制訪問的用戶在一個共用的機器成為一個位置,你可以寫,可能仍有消極的副作用(默認的瀏覽器/其他鍵沒有被正確設置) 。 The browser should still function however.瀏覽器仍應功能,但。 When installing as a restricted access user do not attempt to install over an installation in a restricted-access/shared location as this may destroy that installation.安裝時,作為一個限制訪問的用戶不要嘗試安裝了一個安裝在一個restricted-access/shared位置,因為這可能破壞這一安裝。
* Firefox may hang when closing after viewing a PDF file in some older versions of the Adobe Acrobat Reader plug in. If you experience this, make sure you are using the newest version of the plug in. * Firefox的可能會掛起時,閉幕後,檢視PDF檔案在一些舊版本的Adobe Acrobat Reader插件英寸如果您的經驗,這一點,請確保您使用最新版本的插件英寸
* On Windows 98 and Windows ME systems, the Application icon may appear as a Windows icon. *在Windows 98和Windows Me系統,應用程序圖標可能會出現一個Windows圖標。Mac OS X 在Mac OS X
* Do NOT run Firefox from the Disk Image! *不要運行的Firefox從磁盤的形象! - doing this will cause an infinite restart loop (the symptom of which is a Firefox icon that bounces briefly in the Dock then disappears and reappears, bounces and disappears, over and over). -這樣做將導致一個無限重新啟動迴路(症狀,這是一個F irefox的圖標,跳出簡單的被告席上,然後消失和重新出現,跳出和消失,超過以上) 。 To break Firefox out of this loop, open a Terminal and type “killall firefox-bin” and press enter.打破Firefox的走出這個循環,打開一個終端並鍵入“ killall的Firefox斌”並按下Enter 。 Install Firefox to a location you have write access to and try again.安裝Firefox的某個位置,你有寫入權限,然後再試一次。 When installing on a multi- user limited access system, install it into a shared location as administrator, run it once and then all users should be able to access it.安裝時,一個多用戶有限的准入制度,它安裝到一個共享的位置,作為管理員,運行它一次,然後所有用戶都應該能夠訪問它。
* If Firefox does not display a browser window, quit Firefox using Cmd+Q and open ~/Library/Application Support/Firefox/Profiles/ *如果Firefox不顯示瀏覽器窗口,退出Firefox的使用cmd + Q和開放〜 /資源庫/應用支持/火狐/概況/.default/ and remove localstore.rdf. 。默認/刪除localstore.rdf 。 Restart Firefox.重新啟動Firefox 。 Any toolbar customizations you have made or window placement will be lost任何工具欄自定義您已作出的或在窗口的位置將丟失 Linux and Unix systems Linux和Unix系統
* If Firefox is installed to a location with spaces in the path, Firefox may not be able to set itself as Default browser and may keep prompting at startup. *如果Firefox是安裝到某個位置,與位在道路上, Firefox的未必能訂定本身的作為默認瀏覽器,並可能繼續促使在啟動。 The work around is to install into a path without spaces.周圍的工作是安裝到路徑沒有空格。
* GNOME integration does not work properly with Fedora Core 3. * GNOME的整合工作不妥善的Fedora Core 3 。 Users of Fedora Core 3 will need to download and install linc-1.0.3-3.1.i386.rpm.用戶的Fedora Core 3 ,將需要下載並安裝linc - 1.0.3 - 3.1.i386.rpm 。 After installing the RPM, perform the following command in the directory you installed Firefox into (you will need write permission):在安裝RPM的,請執行下列命令在目錄中你安裝過Firefox的進入(你需要寫權限) :touch .autoreg觸摸。 autoreg
The next time you start Firefox, GNOME integration should be functional.當您下一次啟動Firefox時, GNOME的一體化應功能。
Web Page Rendering 網頁渲染
* Firefox is powered by the same Gecko layout engine as other Mozilla software. * Firefox是由相同的Gecko版面引擎作為其他Mozilla軟件。 If you encounter a problem with a website that does not correctly display then it is usually a problem with Gecko, not Firefox itself.如果您遇到的問題與一個網站,這並不正確顯示的話,通常是一個問題與壁虎,而不是Firefox的本身。 Such problems should be reported in the Core product (not the Firefox product) in Bugzilla.這些問題,應當報在核心產品(而不是Firefox的產品)在bugzilla 。 If you are technically minded, try and create a reduced test case and this will help get your bug more attention.如果您是在技術上的頭腦,嘗試創造一個減少測試案例,這將有助於讓您的錯誤更多的關注。
For additional issues, FAQs, Tips and Tricks plus general Firefox help be sure to check out Firefox Help and the Firefox forums hosted by MozillaZine.為額外的問題,常見問題解答,技巧和竅門,另加一般Firefox的幫助,請務必檢查出Firefox的幫助和Firefox的論壇主辦的mozillazine 。
The Configuration Console (accessed by entering “about:config” in the Location bar and pressing Enter) gives advanced/experienced users direct control over Firefox’s preferences.配置控制台(存取進入“關於:配置” ,在位置的酒吧和緊迫的輸入) ,讓先進的/有經驗的用戶直接控制Firefox的偏好。 This system is for use by people who know what they are doing only, by changing a value incorrectly you may damage or destroy your Firefox installation!這個系統是使用的人誰知道自己在做什麼,只有通過改變一個值不正確,你可能會損害或破壞您的Firefox安裝! Look to Help sites for handy preferences to tweak to customize Firefox further.看看,以幫助網站為方便偏好來調整自定義Firefox的進一步。
Hat-tip: James Huff @帽子提示:詹姆斯吞吐@ MacManx macmanx
Filed under提起下 Computer Security計算機安全 , , Headline News頭條新聞 , , Web網頁 | |
| |
RSS 2.0 2.0 | |
Trackback Trackback跟踪 this Article |此文章|
Email this Article電子郵件此文章
You may also like to read您也可以想讀 |




October 28th, 2006 at 12:47 pm 2006年10月28日在下午12時47分
JAVA SOFTWARE application is not working after installing Internet Explorer 7 ? Java軟件的應用是沒有工作後,安裝Internet Explorer 7 ?