ALARM Group ALERT - click for a description of ALARM, The Computing Alert System Alert Number: 053107-02 Alert Date: 05/31/07 Alert Title: Mozilla Firefox and Thunderbird versions < 2.0.0.4, 1.5.0.12 Update-to: None OS/Platform/Application: Mozilla Firefox and Thunderbird versions < 2.0.0.4, 1.5.0.12 Category: ALERT Severity: MEDIUM Attention: System Administrators, Desktop Support Personnel, Mozilla users
|
Summary: On May 30 2007 The Mozilla Foundation announced the released version 2.0.0.4 of its popular FireFox web browser. This updated version of FireFox addresses five security vulnerabilities and users are "strongly recommend" by the vendor to install the update as soon as possible.
Mozilla has also released version 1.5.0.12 of Firefox. Although support for this version of the application was slated for end-of-life status on April 24 the vendor has extended support but states "We anticipate this to be the last release in the Firefox 1.5.0.x series. Mozilla typically maintains support for previous releases for six months after a major release. Mozilla has previously extended the planned end of life for the 1.5.0.x series in order to accommodate some recent changes in update functionality."
Recommended Actions: Persons who manage, maintain or use Firefox products (regardless of version) are encouraged to read the update information (including any associated caveats, system requirements, etc) and (if appropriate) apply the upgrade immediately as per the instructions provided by the vendor. Users of Firefox v 1.5.0.x are strongly encouraged to consider upgrading to version 2.0.0.4 at their earliest convenience.
ITS Actions: At this time, ITS is taking no specific additional actions to address this software update release.
Resources:
Firefox 2.0.0.4/1.5.0.12 update announcement:
http://developer.mozilla.org/devnews/index.php/2007/05/30/firefox-2004-and-firefox-15012-security-and-stability-update/