[tor-bugs] #7248 [Firefox Patch Issues]: Review+Audit Firefox 16 and 17 for next FF ESR release

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Feb 1 19:25:59 UTC 2013


#7248: Review+Audit Firefox 16 and 17 for next FF ESR release
-----------------------------------------+----------------------------------
 Reporter:  mikeperry                    |          Owner:  mikeperry
     Type:  task                         |         Status:  new      
 Priority:  major                        |      Milestone:           
Component:  Firefox Patch Issues         |        Version:           
 Keywords:  tbb-rebase MikePerry201301d  |         Parent:           
   Points:                               |   Actualpoints:           
-----------------------------------------+----------------------------------

Comment(by mikeperry):

 And here's my final, canonical code review/url checklist:
  - network code audits: SOCKS + hostname resolution, DNS, absence of new
 network syscalls
  - https://developer.mozilla.org/en-US/docs/CSS/calc (can it be used to
 infer display res?)
  - https://bugzilla.mozilla.org/show_bug.cgi?id=629882 (can this be used
 to get system colors?)
  - https://bugzilla.mozilla.org/show_bug.cgi?id=766937 - scrolling
 resolution info
  - https://bugzilla.mozilla.org/show_bug.cgi?id=715041 - Idle API
 (disable/lie)
  - https://bugzilla.mozilla.org/show_bug.cgi?id=760748 - Disk leak with
 webapps?
  - https://wiki.mozilla.org/WebAPI/WebActivities - Can activities be
 detected by 3rd parties?
  - https://developer.mozilla.org/en-US/docs/Apps/Apps_JavaScript_API -
 ditto for apps in general

 Stuff that might actually help us:
  - https://bugzilla.mozilla.org/show_bug.cgi?id=755554 - Might allow us to
 drop our flash patch?
  - https://bugzilla.mozilla.org/show_bug.cgi?id=357725 - Better constrain
 our window sizes?

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/7248#comment:9>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list