Bug#622353: iceweasel: application/binary files are seen as Bzip archives

Vincent Lefevre vincent at vinc17.net
Tue Apr 12 14:05:50 UTC 2011


On 2011-04-12 15:05:21 +0200, Mike Hommey wrote:
> Please file this upstream (reproducible with firefox 4.0),

Done: https://bugzilla.mozilla.org/show_bug.cgi?id=649321

> but I don't think this has much security implication.

Perhaps, but this really depends on what the user does with web sites
he trusts. As I've said in my bug report upstream, this problem can
be summarized as: the correspondence between MIME types and the
description provided by Firefox cannot be trusted, even for trusted
web sites.

-- 
Vincent Lefèvre <vincent at vinc17.net> - Web: <http://www.vinc17.net/>
100% accessible validated (X)HTML - Blog: <http://www.vinc17.net/blog/>
Work: CR INRIA - computer arithmetic / Arénaire project (LIP, ENS-Lyon)





More information about the pkg-mozilla-maintainers mailing list