4 ms·
Firefox – Same-Origin Policy Bypass (CVE-2015-7188)
- afshinmeh 10y agoThey have fixed it, no? https://bugzilla.mozilla.org/show_bug.cgi?id=1199430 https://bugzilla.mozilla.org/show_bug.cgi?id=1199430
- mnarayan01 10y agoTitle seems misleading. The same-origin bypass is via Flash. The Firefox portion is having a funky URL/hostname, which Flash then uses (edit: mis-parses).
- tener 10y agoVery interesting exploit. I wonder what else is affected by IP addresses parsing issues.