Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
What's Hot

Sweeping Zoning Reforms Presents Opportunities For Multifamily Investments

April 23, 2026

Entering the Quantum Era of Autonomy – AlleyWatch

April 23, 2026

Salesforce AI Research at ICLR 2026

April 23, 2026
Facebook Twitter Instagram
Thursday, April 23
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Business CircleBusiness Circle
  • Home
  • AI News
  • Startups
  • Markets
  • Finances
  • Technology
  • More
    • Human Resource
    • Marketing & Sales
    • SMEs
    • Lifestyle
    • Trading & Stock Market
Subscribe
Business CircleBusiness Circle
Home » Mozilla patches two actively exploited zero-day vulnerabilities in Firefox
Technology

Mozilla patches two actively exploited zero-day vulnerabilities in Firefox

Business Circle TeamBy Business Circle TeamMarch 7, 2022No Comments2 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr Email
Share
Facebook Twitter LinkedIn Pinterest Email


The large image: Mozilla has launched new variations of its Firefox browser that appropriate a pair of vital zero-day vulnerabilities. Each have already been actively exploited within the wild, so you may wish to seize the patch ASAP to keep away from publicity.

The vulnerabilities, labeled CVE-2022-26485 and CVE-2022-26486, are each use-after-free (UAF) vulnerabilities that had been reported to Mozilla by Chinese language Web safety firm Qihoo 360. As Kaspersky highlights, all these vulnerabilities relate to the wrong use of dynamic reminiscence throughout a program’s execution.

Pointers in a program discuss with knowledge units in dynamic reminiscence. If an information set is deleted or moved to a different block however the pointer, as an alternative of being cleared (set to null), continues to discuss with the now-freed reminiscence, the result’s a dangling pointer. If this system then allocates this similar chunk of reminiscence to a different object (for instance, knowledge entered by an attacker), the dangling pointer will now reference this new knowledge set. In different phrases, UAF vulnerabilities permit for code substitution.

CVE-2022-26485 pertains to a UAF flaw in XSLT parameter processing, whereas the opposite offers with UAF within the WebGPU PIC framework. Mozilla in its safety advisory mentioned they’ve stories of assaults within the wild using each bugs.

You’ll be able to seize the most recent model of Mozilla Firefox in your platform of alternative over on our downloads web page or replace manually by way of Firefox’s built-in assist menu.

Mozilla’s Firefox has given up important market share during the last decade or so. In keeping with StatCounter, roughly a 3rd of desktops worldwide used Firefox on the finish of 2010. A yr later, Google’s Chrome shot up in reputation and handed Firefox. By mid-2012, Chrome handed Microsoft’s Web Explorer and hasn’t regarded again.

As of final month, Firefox accounted for simply 9.46 p.c of the worldwide desktop browser market. Business chief Chrome, in the meantime, was used on 64.91 p.c of machines.

Picture credit score Nata Figueiredo



Source link

actively exploited Firefox Mozilla patches vulnerabilities zeroday
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Business Circle Team
Business Circle Team
  • Website

Related Posts

Microsoft told carbon-removal project developers it is shelving contracts under negotiation; Microsoft has been a major backer of carbon capture tech (Alastair Marsh/Bloomberg)

April 23, 2026

The Bafta games awards showed me again that honouring art over commerce is a win for all | Games

April 23, 2026

The shadowy SIM farms behind those incessant scam texts – and how to stay safe

April 23, 2026

Microsoft's full-screen Xbox experience is now available to Windows 11 Insiders

April 22, 2026
LATEST UPDATES

Sweeping Zoning Reforms Presents Opportunities For Multifamily Investments

April 23, 2026

Entering the Quantum Era of Autonomy – AlleyWatch

April 23, 2026

Salesforce AI Research at ICLR 2026

April 23, 2026

Healthy Dinners For Weight Loss That Actually Work

April 23, 2026

Microsoft told carbon-removal project developers it is shelving contracts under negotiation; Microsoft has been a major backer of carbon capture tech (Alastair Marsh/Bloomberg)

April 23, 2026

Sales Pipeline Management from a Small Business Perspective

April 23, 2026

Subscribe to Updates

Get the latest sports news from SportsSite about soccer, football and tennis.

Business, Finance and Market Growth News Site

Important Pages
  • Advertise with us
  • Submit Articles
  • About us
  • Contact us
Recent Posts
  • Sweeping Zoning Reforms Presents Opportunities For Multifamily Investments
  • Entering the Quantum Era of Autonomy – AlleyWatch
  • Salesforce AI Research at ICLR 2026
© 2026 BusinessCircle.co
  • Privacy Policy
  • Terms and Conditions
  • Cookie Privacy Policy
  • Disclaimer
  • DMCA

Type above and press Enter to search. Press Esc to cancel.