myITforum.com

Welcome to myITforum.com Sign in | Join | Help
in Search

Harry Waldron at myITforum.com

Sharing Security Developments, and Best Practices for corporate and home users

Mozilla Firefox - IDN Patch corrects critical vulnerabilities

  One day after public disclosure of the vulnerability, an XPI patch was provided that deactivates IDN processing. This tested out well for me 

Mozilla Firefox - IDN Patch corrects critical vulnerabilities
https://addons.mozilla.org/messages/307259.html

On September 9, the Mozilla team released a configuration change which, as a temporary measure to work around this problem, disables IDN in the browser. IDN functionality will be restored in a future product update. The fix is either a manual configuration change or a small download which will make this configuration change for the user.

MANUAL APPROACH:
1. You can type "about:config" as a "URL" in the address bar
2. Then key or locate "network:enableIDN"
3. Double click it to disable it (set it to "false")
4. Close and restart browser (you can do another about:config to confirm this is now set as false)

Comments

No Comments
Powered by Community Server (Commercial Edition), by Telligent Systems