Closed
Bug 306094
Opened 20 years ago
Closed 14 years ago
SVG security review: <svg:script> element
Categories
(Core :: SVG, defect)
Core
SVG
Tracking
()
RESOLVED
WONTFIX
People
(Reporter: jruderman, Unassigned)
References
Details
T Rowley mentioned that this is part of the SVG attack surface and could do with
a security review:
* <script> element - nsSVGScriptElement.cpp
http://lxr.mozilla.org/mozilla/source/content/svg/content/src/nsSVGScriptElement.cpp
Comment 1•16 years ago
|
||
So who would do this review? Is it something we should do at this point?
Updated•16 years ago
|
Assignee: general → nobody
QA Contact: ian → general
Comment 2•14 years ago
|
||
Feel free to reopen if this is going to actually happen.
Status: NEW → RESOLVED
Closed: 14 years ago
Resolution: --- → WONTFIX
You need to log in
before you can comment on or make changes to this bug.
Description
•