This is a crazy way to look at a security vuln

PCWorld Australia has this article posted:

Mozilla pledges to fix second minor Firefox 2.0 bug

This is a vuln, after all — NOT a “minor” bug.  And, read how the first paragraph is laid out:

A second minor bug found in the Firefox 2.0 Web browser will be fixed, but users shouldn't encounter much of a problem in the mean time, a Mozilla official said Thursday.

Ho-hum, says the Mozilla crowd.  Oh, we have a bug.

They go on to say in the article:

The new bug will eventually be fixed. "We will fix it because we need reliability," Nitot said, adding no timetable has been set.

Yes, it’s a bug, says Mozilla.  We’ll get around to it, I guess, but only because we have to.

They also say:

The browser will crash if it visits a Web page that been intentionally coded with JavaScript in such a way as to target the bug, said Tristan Nitot, director of European operations for Mozilla.

"It's very unlikely that anyone would have put a similar page on any ordinary Web page," so users shouldn't be affected, Nitot said.

Yeah — we’re aware of the bug, says Mozilla.  But, who would want to upset someone’s day by crashing computers.  That’s just silly. 

Can you imagine what would happen if Microsoft acted this way?

Published Friday, November 03, 2006 2:56 PM by rodtrent

Comments

# re: This is a crazy way to look at a security vuln

Friday, November 03, 2006 3:47 PM by cmosby

What do you mean IF????

Powered by Community Server (Commercial Edition), by Telligent Systems