Closed
Bug 373711
Opened 19 years ago
Closed 19 years ago
Per-site plugin filtering would enhance security
Categories
(Firefox :: General, enhancement)
Firefox
General
Tracking
()
People
(Reporter: andrew, Unassigned)
Details
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-GB; rv:1.8.1.2) Gecko/20070221 SeaMonkey/1.1.1
Build Identifier: Mozilla/5.0 (X11; U; Linux i686; en-GB; rv:1.8.1.2) Gecko/20070221 SeaMonkey/1.1.1
Browser plugins extend the browser functionality using third-party modules
not audited by Mozilla. These modules have, AFAIK, full access to the browser memory, run with the privilege of the browser user, and run automatically if a matching embedded object is present in a Web page
If a vulnerability is found in a popular plugin, e.g. QuickTime as per
http://docs.info.apple.com/article.html?artnum=305149
then Firefox users may be exposed to "drive by" exploits which require no
user action to infect PCs, and which Mozilla is powerless to mitigate.
It would enhance the security of Firefox if there was a configurable
plugin filter similar to that provided for cookies, popups and images, so
that users could choose which sites to trust.
(it would also let me block Flash from sites that crash my browser...)
Reproducible: Always
Updated•19 years ago
|
Group: security
Status: UNCONFIRMED → RESOLVED
Closed: 19 years ago
Resolution: --- → DUPLICATE
You need to log in
before you can comment on or make changes to this bug.
Description
•