Chrome, Firefox browsers have multiple vulnerabilities: CERT-In

Advertisement
By Press Trust of India | Updated: 17 February 2014 12:55 IST
According to Indian cyber security sleuths at CERT-In, multiple vulnerabilities have been detected in popular web browsers Google Chrome and Mozilla Firefox. The agency is advising Indian Internet users to guard against arbitrary activities on their systems.

In view of these suspicious virus-based activities, Internet users have been asked to upgrade the versions of these two most used web-browsers on their work stations.

"Multiple vulnerabilities have been reported in Mozilla Firefox, Thunderbird and SeaMonkey which could be exploited by a remote attacker to bypass certain security restrictions, disclose potentially sensitive information, gain escalated privileges, execute arbitrary code and causes denial of service condition on the affected system," the Computer Emergency Response Team of India (CERT-In) said in its latest advisory to online users in the country.

The CERT-In is the nodal agency to combat hacking, phishing and to fortify security-related defences of the Indian Internet arena.

Advertisement

"The two web browsers are an important tool for Internet surfing among Indian online consumers. The anomalies have been detected recently and it would be advised that users upgrade their existing versions sooner than later. These activities are mischiefs on part of hackers or they are harmful viruses," a cyber-security expert told PTI.

Advertisement

The agency, in its advisory, said the vulnerability is caused "due to improper restrict access to 'about:home' buttons by script on other pages in Mozilla Firefox".

"A user-assisted remote attacker could exploit this vulnerability using a crafted website or webpage. Successful exploitation of this vulnerability could allow user-assisted remote attacker to cause a denial of service condition," the CERT-In said.

Advertisement

Similar issues have been reported in the popular browser offered by Google.

"Multiple vulnerabilities have been reported in Google Chrome which could be exploited by a remote attacker to cause denial of service condition or execute arbitrary code on the target system," the agency said.

Advertisement

The maximum damage these vulnerabilities can cause, the advisory said, was memory corruption, unwanted downloading of files, loss of sensitive information (when Mozilla Firefox is used on Android phones) and cause of denial of various services on the Internet to the user.

The agency advised Internet users to either use proper security patches (Mozilla Firefox) or upgrade the browser version (Google Chrome).

The affected software systems include "Firefox versions prior to 27.0, Firefox extended support release (ESR) versions prior to 24.3, Thunderbird versions prior to 24.3, SeaMonkey versions prior to 2.24 and Google Chrome prior to version 32.0.1700.102."

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Redmi Pad 2 Pro 5G Will Launch in India Soon: See Expected Features
  2. OTT Releases of the Week: Thamma, Mrs Deshpande, Nayanam, and More
  3. Samsung Will Unveil These New Bespoke AI Devices at CES 2026
  4. Google's Pixel Phones Get a Second December Update With These Fixes
  5. Xiaomi 17 Ultra With Leica-Tuned Cameras Confirmed to Launch Soon
  1. Physicists Push Superconducting Diodes to Higher Temperatures
  2. NASA’s Perseverance Rover Poised for Years of Exploration Across Jezero Crater
  3. James Webb Space Telescope Could Illuminate Dark Matter in an Unexpected Way
  4. James Webb Confirms First Runaway Supermassive Black Hole Rocking Through Space
  5. Interstellar Comet 3I/ATLAS to Make Closest Approach to Earth on December 19
  6. The Roofman Now Streaming Online: Everything You Need to Know
  7. Adobe Firefly Platform Updated With New AI Models and Tools, Offers Limited-Time Unlimited Generations
  8. Boat Valour Ring 1 Launched in India With Heart Rate Variability Tracking, Up to 15-Day Battery Life: Price, Features
  9. Call of Duty: Black Ops 7 Was the Best-Selling Game in the US in November, but Trails Battlefield 6 in 2025
  10. Truecaller Voicemail Feature Launched for Android Users in India With Transcription in 12 Regional Languages
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.