Open Bug 1962874 Opened 1 year ago Updated 1 year ago

clipboard button appears outside the window or other lead to confusion

Categories

(Core :: DOM: Copy & Paste and Drag & Drop, defect)

defect

Tracking

()

People

(Reporter: sas.kunz, Unassigned)

References

(Regression)

Details

(Keywords: regression, reporter-external, Whiteboard: [client-bounty-form])

Attachments

(2 files)

I found a vulnerability where the clipboard button appears outside the window or other lead to confusion

  1. open buttonremain.html
  2. click on web content
  3. click maximize or click menu or move to omnibox

OS: windows 11
Firefox version: Nighlty 139.0a1 (2025-04-24) (64-bit)

Flags: sec-bounty?
Attached file buttonremain.html
Group: firefox-core-security → dom-core-security
Component: Security → DOM: Core & HTML
Keywords: csectype-spoof
Product: Firefox → Core

I can reproduce the button showing up in some odd places, like mousing over some toolbar buttons can drop a "Paste" button even if I don't actually click there. But (on mac) I can't reproduce shrinking the window and leaving the paste button floating in space. The button goes away the instant I grab the window border (could be an OS difference).

This is clearly all wrong and broken, but I don't see how it's a security bug.

Flags: needinfo?(sas.kunz)
Component: DOM: Core & HTML → DOM: Copy & Paste and Drag & Drop
Keywords: regression
Regressed by: 1877400, 1744524
See Also: → CVE-2024-10465

When the window is minimized and the clipboard button appears after the window is minimized and behind it there may be a word application or another application, this causes confusion which can cause the victim to click on it.

Flags: needinfo?(sas.kunz)

We don't think this bug needs to be hidden for security reasons. It's just buggy

Group: dom-core-security
Keywords: csectype-spoof
Flags: sec-bounty? → sec-bounty-
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: