Re: "Chrome and Firefox are both vulnerable to CRIME"
On an other website I've seen the author mention: we tested Firefox and Chrome and notified them, they both are working on fixes or have some prepared.
Which basically means, the other browsers don't know what the problem is, if they are vulnerable or how to fix it.
There is a talk by the authors about the CRIME-attack a conference, the conference is on 19, 20 or 21
That was the only information I could find.
The last time was the BEAST attack, it wasn't specific to OpenSSL at all. Maybe you meant the SSL renegotiation attack, that was kind of OpenSSL specific. But most servers do use OpenSSL, so it basically effected almost all servers installations except IIS on Windows.