3year-old bug in Mozilla browsers facilitates MITM

graf0z writes: Mozilla based browsers suffer from a certificate handling bug which is known for more that three years. It will be fixed in upcoming Mozilla-1.9 (e.g. Firefox-3, Seamonkey-2), but there are no plans to patch earlier versions (e.g. Firefox-2, Seamonkey-1). So much about OSS fixing issues fast ...
