Critical Firefox Vulnerability Discovered

Vistaar

Vista Guru
A critical vulnerability in Firefox was announced by Mozilla on January 8, 2020, and fixed in Firefox 72.0.1. Did this vulnerability also exist in Firefox ESR 52, which some Windows Vista diehards are probably still using? According to Moonchild (developer of Pale Moon and Basilisk), "Also note that if you are still on Firefox ESR-52 for legacy extension use, you are at risk..."

VistaLover of MSFN has suggested changing javascript.options.ion from true to false in about:config as a mitigation.
 

My Computer

System One

  • Operating System
    Vista Home Premium x86 SP2
    Manufacturer/Model
    HP Pavilion Elite m9150f
    CPU
    Intel Q6600
    Memory
    3 GB
    Graphics Card(s)
    NVIDIA GeForce 8500 GT

stvpls

Vista 4ever
i agree with you that may be unsecure but i think that 52 is the last good version because of the design wich i like more than the modern one wich i don't, also it does have one problem, for some reason it does use tons of ram just for a simple web page, thats why i use opera 36 and ie 9 with tls 1.1 and 1.2 enabled instead of that ram eater
 

My Computers

System One System Two

  • Operating System
    Windows Vista Ultimate
    Manufacturer/Model
    Fujitsu D9510
    CPU
    intel core2 duo p8600
    Motherboard
    fujitsu
    Memory
    3gb
    Graphics Card(s)
    mobile intel 4
    Screen Resolution
    1440x900
    Hard Drives
    wdc 300gb
    Mouse
    trackpad only with buttons for optional trackpoint
    Keyboard
    IT
    Internet Speed
    10mbits down /1mbit up
  • Operating System
    Windows Xp Professional
    Manufacturer/Model
    DELL LATITUDE D610
    CPU
    Pentium M 1.66
    Motherboard
    DELL
    Memory
    2gb
    Graphics card(s)
    intel
    Monitor(s) Displays
    4:3
    Hard Drives
    80gb
    PSU
    Original 60w DELL psu
    Mouse
    trackpad and trackpoint
    Other Info
    restored like new condition

wither 3

Vista Guru
Gold Member
I use both but use FF most of the time. When I use the Performance Monitor and check memory usage with Opera open and one webpage open, the usage is about 54%. I close Opera and open the same page in FF, the usage is about 55% so I don't know why you mention the "tons of RAM." With both browsers closed, memory usage is about 47%. However, this is off subject for this thread.

I haven't experienced any security issues with either browser.
 

My Computer

System One

  • Operating System
    Vista Home Premium 64 bit SP2
    Manufacturer/Model
    Cyberpower
    CPU
    Intel Quad CPU Q6700 2.67 GHZ
    Motherboard
    NVIDIA 780i
    Memory
    4 GB
    Graphics Card(s)
    MSI GTX 560 TI Twin Frozr
    Sound Card
    Sound Blaster SB Audigy
    Monitor(s) Displays
    Viewsonic VG2436
    Screen Resolution
    1920x1080p
    Hard Drives
    Samsung HD 105SI
    WDC WD20
    Case
    Apevia XJupiter
    Cooling
    air
    Mouse
    Logitech MX 600
    Keyboard
    Logitech MX 3200
    Internet Speed
    30 Mbps

stvpls

Vista 4ever
I use both but use FF most of the time. When I use the Performance Monitor and check memory usage with Opera open and one webpage open, the usage is about 54%. I close Opera and open the same page in FF, the usage is about 55% so I don't know why you mention the "tons of RAM." With both browsers closed, memory usage is about 47%. However, this is off subject for this thread.

I haven't experienced any security issues with either browser.
i mean ff uses like 300mb just to get the homepage, i have cookie editor for old youtube layout and adblock on both
just look at how much just for the damn home
the same happens on my xp/win 7 computers
1580750786671.png
 

My Computers

System One System Two

  • Operating System
    Windows Vista Ultimate
    Manufacturer/Model
    Fujitsu D9510
    CPU
    intel core2 duo p8600
    Motherboard
    fujitsu
    Memory
    3gb
    Graphics Card(s)
    mobile intel 4
    Screen Resolution
    1440x900
    Hard Drives
    wdc 300gb
    Mouse
    trackpad only with buttons for optional trackpoint
    Keyboard
    IT
    Internet Speed
    10mbits down /1mbit up
  • Operating System
    Windows Xp Professional
    Manufacturer/Model
    DELL LATITUDE D610
    CPU
    Pentium M 1.66
    Motherboard
    DELL
    Memory
    2gb
    Graphics card(s)
    intel
    Monitor(s) Displays
    4:3
    Hard Drives
    80gb
    PSU
    Original 60w DELL psu
    Mouse
    trackpad and trackpoint
    Other Info
    restored like new condition

Vistaar

Vista Guru
i agree with you that may be unsecure but i think that 52 is the last good version because of the design wich i like more than the modern one...
Firefox ESR 52.9.0 was of course the last version that supported Windows Vista and XP, so it doesn't really matter what we think about Firefox Quantum (which I assume you have used on Windows 7). There is an old sticky thread What browser do you use? that might be more suitable for discussion of your personal browser preferences. The purpose of my original post was to alert Vista diehards to an unpatched vulnerability that was already being exploited in the wild a month ago. (OT, but I don't think a fork of Chromium 49 that hasn't been patched since August 2016 can be regarded as secure either.)
 

My Computer

System One

  • Operating System
    Vista Home Premium x86 SP2
    Manufacturer/Model
    HP Pavilion Elite m9150f
    CPU
    Intel Q6600
    Memory
    3 GB
    Graphics Card(s)
    NVIDIA GeForce 8500 GT
Top