"Mozilla Firefox fell to the team of Willem Pinckaers and Vincenzo Iozzo, who together took second place overall in Pwn2Own. Their single zero day vulnerability in Firefox involved a use-after-free problem which evaded DEP and ASLR protections in Windows 7."
I wouldn't ever trust Windows. I'm sure my system is far more secure with Apparmor profiles rather than Windows' sandboxing.
Posted Mar 29, 2012 1:34 UTC (Thu) by Fowl (subscriber, #65667)
[Link]
Firefox isn't currently sandboxed on any platform.
IE and Chrome, which are, have had vulnerabilities mitigated by sandboxing in the past. It's not perfect of course, but now you have to find an elevation of privilege vulnerability to get your remote code execution vulnerability to take over the system.