Ask Experts Questions for FREE Help !
Ask
    benn11's Avatar
    benn11 Posts: 1,036, Reputation: 43
    Ultra Member
     
    #1

    Jul 11, 2007, 01:20 AM
    WARNING, Firefox "firefoxurl" URI Handler Registration Vulnerability
    WARNING

    A vulnerability has been discovered in Firefox, which can be exploited by malicious people to compromise a user's system.

    The problem is that Firefox registers the "firefoxurl://" URI handler and allows invoking Firefox with arbitrary command line arguments. Using e.g. the "-chrome" parameter it is possible to execute arbitrary Javascript in chrome context. This can be exploited to execute arbitrary commands e.g. when a user visits a malicious web site using Microsoft Internet Explorer.

    The vulnerability is confirmed in Firefox version 2.0.0.4 on a fully patched Windows XP SP2. Other versions may also be affected.

    Read more >>
    benn11's Avatar
    benn11 Posts: 1,036, Reputation: 43
    Ultra Member
     
    #2

    Jul 11, 2007, 01:39 AM
    To disable Firefox URI handler follow this steps

    Open Windows Explorer and from the Tools menu select "Folder Options" menu. On the dialog that appears select the "File Types" tab.

    Now in the list of registered file types find the one that says:

    "(NONE)" for extension and "Firefox URL" for file type

    Select it and click on delete button to delete it.

    Click on "OK" to close the "Folder Options" dialog.

Not your question? Ask your question View similar questions

 

Question Tools Search this Question
Search this Question:

Advanced Search


Check out some similar questions!

Firefox question about the "tabbed browsing" [ 4 Answers ]

I recently started using Firefox browser, unfortunately, I messed around with customizing it and somehow It does not do the "tabbed browsing" feature. I lost it and cannot find where to fix it. I did delete the program, the Firefox and reinstalled it hoping it would go back to the default...

Firefox toolbar customizaton: "flexible space" [ 1 Answers ]

Nothing in Help for the "flexible space"... I thought if I put one in there, I could stretch it to be as wide as I like... but it does not stretch. All it really is is a skinny space. What exactly is the flexible space and how do I use it? Thanks!

Firefox: Where did my "information bar" go? [ 3 Answers ]

Ok, ding dong me does not even know what to call it to search the help... The bar above my taskbar that shows 1. the url to links I hover over, 2. whether I'm on a secure page or not, etc... has disappeared. What's it called and how do I get back? Thanks!

Windows & Firefox: Right Click "Open With" Option [ 5 Answers ]

Been mostly using FF this year but some sites don't play well - and some impossible. I've got shortcuts to these sites on my desktop. I'd really love to "designate" them as IE shortcuts so that they'll open with IE if I click on them. ... but if this is not possible, I'd like to at least...

Firefox toolbar settings suddenly aren't "sticking" [ 5 Answers ]

For some reason, starting just yesterday, my toolbar settings are are lost every time I shut it down. I've not added any plugins or changed anything with FF. Weird. Any clues what could cause this? Thanks!


View more questions Search