Bug#717115: iceweasel: middle-click in Twitter pastes the contents of the clipboard instead of the primary selection

Vincent Lefevre vincent at vinc17.net
Wed Jul 17 01:07:01 UTC 2013


Package: iceweasel
Version: 22.0-1
Severity: important

A middle-click in Twitter (Compose new tweet...) pastes the contents
of the clipboard instead of the primary selection (standard behavior).

This is potentially a security problem as data not intended to be made
public can be posted in this way, if the user doesn't take care...

-- Package-specific info:


-- Addons package information

-- System Information:
Debian Release: jessie/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable'), (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 3.9-1-amd64 (SMP w/8 CPU cores)
Locale: LANG=POSIX, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages iceweasel depends on:
ii  debianutils          4.3.4
ii  fontconfig           2.10.2-2
ii  libatk1.0-0          2.8.0-2
ii  libc6                2.17-7
ii  libcairo2            1.12.14-5
ii  libfontconfig1       2.10.2-2
ii  libfreetype6         2.4.9-1.1
ii  libgcc1              1:4.8.1-6
ii  libgdk-pixbuf2.0-0   2.28.2-1
ii  libglib2.0-0         2.36.3-3
ii  libgtk2.0-0          2.24.20-1
ii  libnspr4             2:4.10-1
ii  libpango-1.0-0       1.32.5-5+b1
ii  libpangocairo-1.0-0  1.32.5-5+b1
ii  libpangoft2-1.0-0    1.32.5-5+b1
ii  libsqlite3-0         3.7.17-1
ii  libstdc++6           4.8.1-6
ii  procps               1:3.3.8-2
ii  xulrunner-22.0       22.0-1

iceweasel recommends no packages.

Versions of packages iceweasel suggests:
ii  fonts-stix [otf-stix]  1.1.0-1
ii  libgssapi-krb5-2       1.10.1+dfsg-6.1
pn  mozplugger             <none>

Versions of packages xulrunner-22.0 depends on:
ii  libasound2                1.0.27.2-1
ii  libatk1.0-0               2.8.0-2
ii  libbz2-1.0                1.0.6-4
ii  libc6                     2.17-7
ii  libcairo2                 1.12.14-5
ii  libdbus-1-3               1.6.12-1
ii  libdbus-glib-1-2          0.100.2-1
ii  libevent-2.0-5            2.0.21-stable-1
ii  libfontconfig1            2.10.2-2
ii  libfreetype6              2.4.9-1.1
ii  libgcc1                   1:4.8.1-6
ii  libgdk-pixbuf2.0-0        2.28.2-1
ii  libglib2.0-0              2.36.3-3
ii  libgtk2.0-0               2.24.20-1
ii  libhunspell-1.3-0         1.3.2-4
ii  libmozjs22d               22.0-1
ii  libnspr4                  2:4.10-1
ii  libnss3                   2:3.15-1
ii  libpango-1.0-0            1.32.5-5+b1
ii  libpangocairo-1.0-0       1.32.5-5+b1
ii  libpangoft2-1.0-0         1.32.5-5+b1
ii  libpixman-1-0             0.26.0-4
ii  libsqlite3-0              3.7.17-1
ii  libstartup-notification0  0.12-3
ii  libstdc++6                4.8.1-6
ii  libvpx1                   1.2.0-2
ii  libx11-6                  2:1.6.0-1
ii  libxext6                  2:1.3.2-1
ii  libxrender1               1:0.9.8-1
ii  libxt6                    1:1.1.3-1+deb7u1
ii  zlib1g                    1:1.2.8.dfsg-1

Versions of packages xulrunner-22.0 suggests:
ii  libcanberra0  0.30-2
ii  libgnomeui-0  2.24.5-2

-- no debconf information



More information about the pkg-mozilla-maintainers mailing list