[tor-bugs] #20442 [Applications/Tor Browser]: Backport fix for CVE-2016-5279: local path disclosure after drag and drop (bug 1249522)

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Oct 25 18:32:13 UTC 2016


#20442: Backport fix for CVE-2016-5279: local path disclosure after drag and drop
(bug 1249522)
-------------------------------------------------+-------------------------
 Reporter:  gk                                   |          Owner:  tbb-
                                                 |  team
     Type:  task                                 |         Status:
                                                 |  needs_review
 Priority:  High                                 |      Milestone:
Component:  Applications/Tor Browser             |        Version:
 Severity:  Major                                |     Resolution:
 Keywords:  TorBrowserTeam201610R,               |  Actual Points:
  GeorgKoppen201610                              |
Parent ID:                                       |         Points:
 Reviewer:                                       |        Sponsor:
-------------------------------------------------+-------------------------
Changes (by gk):

 * keywords:  TorBrowserTeam201610, GeorgKoppen201610 =>
     TorBrowserTeam201610R, GeorgKoppen201610
 * status:  new => needs_review


Comment:

 bug_20442 (https://gitweb.torproject.org/user/gk/tor-
 browser.git/log/?h=bug_20442) in my public tor-browser repo has the
 backport up for review (three patches). I built it for all three platforms
 and tested the Linux variant.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/20442#comment:3>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list