#12185 closed enhancement (fixed)
firefox-67.0.4
Reported by: | Douglas R. Reno | Owned by: | |
---|---|---|---|
Priority: | normal | Milestone: | 9.0 |
Component: | BOOK | Version: | SVN |
Severity: | normal | Keywords: | |
Cc: |
Description
New point version
Security fix for another 0day
I need to build this to get CUPS working with my printer in a few packages. Ken, if you don't get to it by the time I do, I can take care of it
Note:
See TracTickets
for help on using tickets.
CVE-2019-11708 sandbox escape using Prompt:Open
Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user's computer.