PDA

View Full Version : CW: Research fingers ActiveX 79%, QuickTime 8% as buggiest browser plug-ins




clevin
Apr 12, 2008, 07:17 PM
http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9077099&intsrc=hm_list

ActiveX accounted for 79% of the 239 plug-in bugs discovered between July and December of 2007, Symantec said. The plug-in with the next-highest number of flaws was Apple Inc.'s QuickTime, which had just 8% of the six-month's total.
...
IE7 hasn't had a measurable impact on the number of ActiveX vulnerabilities, In the second half of 2007, Symantec detected 190 ActiveX vulnerabilities, down about 10% from the 210 found in the first six months of that year.
...
Other plug-ins for which Symantec tallied vulnerabilities included Sun's Java (13 flaws detected), Adobe's Flash (11), Microsoft's Windows Media Player (4) and Adobe's Acrobat Reader (1).



John.B
Apr 12, 2008, 10:36 PM
Meh. Flash™ on my MacBook is pretty much Teh Suck™. Turns it into a miniature furnace, I could probably use it to load test my CPU. I couldn't think of a worse plug-in.

Thankfully the best add-in/plug-in, FlashBlock (http://flashblock.mozdev.org/), neutralizes the avoidable FlashTrash out there (but unfortunately it is only available for Firefox).