The hole, a memory corruption flaw, could have let a remote attacker run arbitrary code on a person's computer. The problem doesn't affect Firefox 3.5 or other earlier versions, Mozilla said.

Mozilla released Firefox 3.6.2 just over a week earlier, also for security reasons.

The new vulnerability was disclosed at the CanSecWest conference in March, according to a message from Mozilla security team member Dan Veditz.






Firefox 3.6 Download...