Risk: High
A critical flaw that affected both IE and Firefox has been patched. The flaw allowed an attacker to remotely execute malicious code on a machine that runs IE but also has Firefox installed. There was initially some confusion over whose responsibility the vulnerability was, but a fix came from Mozilla and the flaw has been patched in the most recent version of Firefox, 2.0.0.5, which is automatically downloaded when using Firefox.