This week, the Mozilla Foundation released Firefox 25 for Mac OS X and other operating systems with patches for 10 flaws—of these, 5 are “critical.” Mozilla identifies critical-impacting flaws as those that can be used to run attacker code and install software, requiring no user interaction beyond normal browsing. Therefore, we recommend all Firefox users apply the updates as soon as possible.
Four of the critical vulnerabilities could lead to a potentially exploitable crash, and the other is a memory safety bug, identified as MFSA 2013-93, which “showed evidence of memory corruption under certain circumstances, and we presume that with enough effort at least some of these could be exploited to run arbitrary code,” according to Mozilla’s security advisory.
Following is a list of the security issues resolved in this update:
To get the latest version, you can update Firefox on your Mac by using the browser’s internal updater (go to Firefox > About Firefox > Check for Updates). Or you can head over to Mozilla.org to download Firefox 25 for Mac.