Closed
Bug 1751114
Opened 3 years ago
Closed 3 years ago
Firefox for iOS shows previously closed private tabs for a fraction of a second when opening new private browsing tabs
Categories
(Firefox for iOS :: General, defect, P4)
Firefox for iOS
General
Tracking
()
RESOLVED
FIXED
| Tracking | Status | |
|---|---|---|
| fxios | 103 | --- |
People
(Reporter: eric, Assigned: lougenia)
References
Details
(Keywords: privacy, reporter-external, sec-low, Whiteboard: [reporter-external] [client-bounty-form] [verif?])
Attachments
(3 files)
Please see attached proof-of-concept documentation for steps, version, etc.
Flags: sec-bounty?
Comment 2•3 years ago
|
||
Stefan, can you pass this to the right people?
Group: firefox-core-security → mobile-core-security
Component: Security → General
Flags: needinfo?(sarentz)
Product: Firefox → Firefox for iOS
Summary: Firefox Private Browsing bug → Firefox for iOS shows previously closed private tabs for a fraction of a second when opening new private browsing tabs
Updated•3 years ago
|
Flags: needinfo?(sarentz) → needinfo?(jeevans)
Updated•3 years ago
|
Flags: needinfo?(jeevans)
Comment 4•3 years ago
|
||
Is this memory cached, such that if iOS eventually kills the process it will go away? Or is this nearly permanent?
I'm assuming it's relatively temporary: writing anything down in private browsing mode is a problem in any case.
From my testing, the image goes away only if the user completely closes Firefox.
If user... :
- ...closes the Private Browsing tab
- ...clicks the iPhone Home button
- ...does other tasks with the phone (duration tested: up to 2hours)
- ...then reopens Firefox and opens a new Private Browser tab
...the issue still exists.
Comment 6•3 years ago
|
||
I don't feel this is a security issue, but definitely a bug for privacy.
Tagging Daniela for priority
Flags: needinfo?(jeevans) → needinfo?(darcese)
This is now tracked with JIRA issue https://mozilla-hub.atlassian.net/browse/FXIOS-3673
Comment 9•3 years ago
|
||
Closing the issue as verified fix on main 804720df41008d6c1adea8d11a3f05af1aef7c01
Status: UNCONFIRMED → RESOLVED
Closed: 3 years ago
Resolution: --- → FIXED
Updated•3 years ago
|
Assignee: nobody → lougenia
Group: mobile-core-security → core-security-release
tracking-fxios:
--- → 103
Updated•3 years ago
|
Group: core-security-release
Flags: sec-bounty? → sec-bounty-
Comment 10•3 years ago
|
||
Updated•1 year ago
|
Keywords: reporter-external
You need to log in
before you can comment on or make changes to this bug.
Description
•