Seems as if an exploit in the shell: protocol handler has been discovered and patched almost as fast. Users of Mozilla are going to want to download the 1.7.1 version and users of Firefox should download 0.9.2. The explot allows a malicious meta tag to run arbitrary code on your system. It can easily be seen that this could be used to do stealth installs of spyware, just like IE.


Articles RSS