2014年12月1日星期一

Firefox 34 Makes It administrator: Google Is shown, Yahoo Is in the field of

Firefox 34 Makes It administrator: Google Is shown, Yahoo Is in the field of

Firefox 34, which includes eight security fixes, is the head version since Mozilla announced it was dropping Google in favor of Yahoo in the role of its default search engine.
Firefox 34 is straight away shown, and with it, users advantage additional search and exchange of ideas skin texture in the role of well in the role of fixes in favor of eight security issues.
The most up-to-date issue of Mozilla's open-source jungle browser is particularly remarkable in the field of so as to it is the head Firefox issue since Mozilla's declaration on Nov. 19 so as to it was end its decadelong search company with Google.
In the field of Firefox 34, Yahoo is straight away the default search giver in favor of users in the field of the United States, while Yandex is straight away the default in the field of Russia and Baidu is the default in the field of serving dishes. The search hindrance itself has plus been improved to new by a long way enable users to operation special search engines afar moral the default search giver, significance so as to while Yahoo is straight away the default search engine in favor of individuals in the field of the U.S., users can by a long way coins the default back to Google.
Mozilla is plus introducing its Firefox Hello WebRTC (Web Real instance Communications) play a part in the field of the calm issue of Firefox 34. The imply of Firefox Hello is so as to users long for be located able to by a long way reach voice calls using simply the browser. Chad Weiner, director of upshot management in favor of Firefox by the side of Mozilla, explained to eWEEK so as to even though the Firefox Hello play a part is in the field of the calm, normally existing Firefox 34 issue, it long for still arrange a beta label.

"We don't make this often, but from time to time we iterate so much on a play a part in the field of its formative stages, even as soon as it is existing to our issue channel, so as to it makes new feel to still designate a play a part in the role of being in the field of a beta state, even in the role of it is existing to a load audience," Weiner assumed. "We're convinced in the field of the performance of the play a part, but it's still additional so we expect to arrange to production shown particular bugs along the way."

In the field of expressions of what's after that, Mozilla is looking by the side of ways to bring collaboration elements to Hello so users can share new online experiences and be located new productive, he assumed.
Security
From a security standpoint, Firefox 34 is the head Firefox issue to completely disable support in favor of the Secure Sockets Layer (SSL) 3.0 cryptographic protocol. SSL 3.0 was revealed to be located by the side of hazard of exploitation from the POODLE vulnerability. Rival browser vendor Google, meanwhile, certain to at the outset simply globule fallback compatibility in favor of SSL 3.0 with the Chrome 39 browser and is not projected to globule SSL 3.0 support entirely until Chrome 40 presently this month.
"Dropping support in favor of SSLv3 entirely protects new users from its inherent vulnerabilities," Weiner assumed. "We're putting users' safety online head and frustrating to destructively impetus the jungle with regard to new secure alternatives."
In the role of part of the Firefox 34 issue, Mozilla has issued eight security advisories, three of which are rated in the role of being grave.
With the grave advisories is single so as to on the whole Firefox releases include in favor of I beg your pardon? Mozilla refers to in the role of "Miscellaneous remembrance safety hazards." The moment grave advisory is in favor of a use-after-free remembrance deliver in the field of HTML5 parsing so as to is identified in the role of CVE-2014-1592.
The third grave security advisory is in favor of a shield overflow deliver identified in the role of CVE-2014-1593, which was reported to Mozilla by a Google security researcher.
"Security researcher Abhishek Arya (Inferno) of the Google Chrome Security Team used the direct Sanitizer tool to discover a shield overflow for the duration of the parsing of media content," Mozilla's security advisory warns. "This leads to a potentially exploitable crash."
The direct Sanitizer tool is open-source know-how from Google so as to is used by security researchers to help identify prospective use-after-free flaws in the field of software code.

Tags : Firefox , Google , Yahoo

0 条评论:

发表评论

订阅 博文评论 [Atom]

<< 主页