Assuming we want them, we currently don't have the ability to add custom headers to URLRequests and we might want to implement them. If we do, we would also need to tie in validation for a) cross-domain requests (via policy files) and b) disallowed headers, as well as look out for known vulnerabilities.  http://help.adobe.com/en_US/FlashPlatform/reference/actionscript/3/flash/net/URLRequestHeader.html  http://www.actionscripterrors.com/?p=696  http://www.securiteam.com/securityreviews/5KP0M1FJ5E.html
This bug does not need to block Shumway's 1.0 milestone for ads.
No longer blocks: shumway-1.0
Product: Firefox → Firefox Graveyard
3 years ago
Status: NEW → RESOLVED
Last Resolved: 3 years ago
Resolution: --- → INCOMPLETE
You need to log in before you can comment on or make changes to this bug.