CentOS Errata and Security Advisory CEEA-2005:434
https://rhn.redhat.com/errata/RHSA-2005-434.html
It's the same firefox modified to build for CentOS-3 as the previous provided one is vulnerable too.
The following updated files have been uploaded and are currently syncing to the mirrors:
s390: centosplus/s390/RPMS/firefox-1.0.4-1.4.1.centos3.s390.rpm
s390x: centosplus/s390x/RPMS/firefox-1.0.4-1.4.1.centos3.s390x.rpm
sources: centosplus/s390/SRPMS/firefox-1.0.4-1.4.1.centos3.src.rpm centosplus/s390x/SRPMS/firefox-1.0.4-1.4.1.centos3.src.rpm