#12185 closed enhancement (fixed)
firefox-67.0.4
| Reported by: | Douglas R. Reno | Owned by: | |
|---|---|---|---|
| Priority: | normal | Milestone: | 9.0 |
| Component: | BOOK | Version: | SVN |
| Severity: | medium | Keywords: | |
| Cc: |
Description
New point version
Security fix for another 0day
I need to build this to get CUPS working with my printer in a few packages. Ken, if you don't get to it by the time I do, I can take care of it
Note:
See TracTickets
for help on using tickets.

CVE-2019-11708 sandbox escape using Prompt:Open
Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer.