On 2011-04-12 15:05:21 +0200, Mike Hommey wrote:
> Please file this upstream (reproducible with firefox 4.0),

Done: https://bugzilla.mozilla.org/show_bug.cgi?id=649321

> but I don't think this has much security implication.

Perhaps, but this really depends on what the user does with web sites
he trusts. As I've said in my bug report upstream, this problem can
be summarized as: the correspondence between MIME types and the
description provided by Firefox cannot be trusted, even for trusted
web sites.

-- 
Vincent Lefèvre <vinc...@vinc17.net> - Web: <http://www.vinc17.net/>
100% accessible validated (X)HTML - Blog: <http://www.vinc17.net/blog/>
Work: CR INRIA - computer arithmetic / Arénaire project (LIP, ENS-Lyon)



--
To UNSUBSCRIBE, email to debian-bugs-rc-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to