CentOS Errata and Security Advisory CEEA-2005:434
https://rhn.redhat.com/errata/RHSA-2005-434.html
(Rebuild from Pasi's src.rpm) It's the same firefox modified to build for CentOS-3 as the previous provided one is vulnerable too.
The following updated files have been uploaded and are currently syncing to the mirrors:
files: centosplus/i386/RPMS/firefox-1.0.4-1.4.1.centos3.i386.rpm
source: centosplus/i386/SRPMS/firefox-1.0.4-1.4.1.centos3.src.rpm
Tru