Chrome, Firefox browsers have multiple vulnerabilities: CERT-In

Advertisement
By Press Trust of India | Updated: 17 February 2014 12:55 IST
According to Indian cyber security sleuths at CERT-In, multiple vulnerabilities have been detected in popular web browsers Google Chrome and Mozilla Firefox. The agency is advising Indian Internet users to guard against arbitrary activities on their systems.

In view of these suspicious virus-based activities, Internet users have been asked to upgrade the versions of these two most used web-browsers on their work stations.

"Multiple vulnerabilities have been reported in Mozilla Firefox, Thunderbird and SeaMonkey which could be exploited by a remote attacker to bypass certain security restrictions, disclose potentially sensitive information, gain escalated privileges, execute arbitrary code and causes denial of service condition on the affected system," the Computer Emergency Response Team of India (CERT-In) said in its latest advisory to online users in the country.

Advertisement

The CERT-In is the nodal agency to combat hacking, phishing and to fortify security-related defences of the Indian Internet arena.

"The two web browsers are an important tool for Internet surfing among Indian online consumers. The anomalies have been detected recently and it would be advised that users upgrade their existing versions sooner than later. These activities are mischiefs on part of hackers or they are harmful viruses," a cyber-security expert told PTI.

Advertisement

The agency, in its advisory, said the vulnerability is caused "due to improper restrict access to 'about:home' buttons by script on other pages in Mozilla Firefox".

"A user-assisted remote attacker could exploit this vulnerability using a crafted website or webpage. Successful exploitation of this vulnerability could allow user-assisted remote attacker to cause a denial of service condition," the CERT-In said.

Advertisement

Similar issues have been reported in the popular browser offered by Google.

"Multiple vulnerabilities have been reported in Google Chrome which could be exploited by a remote attacker to cause denial of service condition or execute arbitrary code on the target system," the agency said.

Advertisement

The maximum damage these vulnerabilities can cause, the advisory said, was memory corruption, unwanted downloading of files, loss of sensitive information (when Mozilla Firefox is used on Android phones) and cause of denial of various services on the Internet to the user.

The agency advised Internet users to either use proper security patches (Mozilla Firefox) or upgrade the browser version (Google Chrome).

The affected software systems include "Firefox versions prior to 27.0, Firefox extended support release (ESR) versions prior to 24.3, Thunderbird versions prior to 24.3, SeaMonkey versions prior to 2.24 and Google Chrome prior to version 32.0.1700.102."

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Itel Aqua Launched in India With IP67 Rating, 1,200mAh Battery: See Price
  2. MSI's First RTX Spark Laptop Targets AI Workloads, Creators and Developers
  3. Moto G37 Power Review: Covers All the Bases and More
  4. Apple Brings New Wallpaper, Apple Music Playlist Ahead of WWDC 2026
  5. New iPhone 18 Pro Leak Suggests It Could Arrive in These Battery Variants
  1. Asus ProArt P16, ProArt P14 and New ProArt Mini PC With Nvidia RTX Spark Unveiled at Computex 2026
  2. Computex 2026: MSI Prestige N16 Flip AI+ Announced as Company's First Nvidia RTX Spark-Powered Laptop
  3. Apple Releases New ‘Glow All Out’ Wallpaper, Apple Music Playlist Hinting at Next Week’s WWDC 2026 Theme
  4. Xiaomi's HyperOS 3 Adds AirDrop Support on Select Models With Ability to Share Files With Apple Devices
  5. iPhone 18 Pro Leak Hints at Two Battery Variants With Slightly Different Capacities
  6. Samsung Galaxy Fit 4 Launch Timeline Reportedly Leaked; May Debut Alongside Galaxy S26 FE
  7. iPhone Ultra Tipped to Launch in White Colourway; May Feature Vapour Chamber Cooling
  8. Asus ROG Edition 20 Lineup Unveiled at Computex 2026 to Commemorate 20 Years of ROG Series Products
  9. Indian Startup Pawzeeble Is Building a Pet-Focused Social Networking Space for Indian Users
  10. Asus ROG Strix Scar 18 (2026) With 240Hz 4K Mini-LED Display Showcased at Computex 2026
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.