Until the Firefox team issues a patch (and they’re usually quick in doing so), turn off Javascript and “Allow web sites to install software”. Both options can be found at: Tools > Options > Web Features.
Mozilla Arbitrary Code Executation Security Flaw
Update: more info here
