Vulnerability (unquoted path containing spaces) in "UninstallString" may run rogue program
Categories
(Thunderbird :: Installer, defect)
Tracking
(thunderbird_esr78+ fixed, thunderbird84 affected)
People
(Reporter: stefan.kanthak, Assigned: lilian.braud)
References
Details
Attachments
(1 file)
|
47 bytes,
text/x-phabricator-request
|
wsmwk
:
approval-comm-esr78+
|
Details | Review |
| Reporter | ||
Comment 1•12 years ago
|
||
Comment 2•12 years ago
|
||
| Reporter | ||
Comment 3•12 years ago
|
||
Comment 4•12 years ago
|
||
Comment 5•4 years ago
|
||
(In reply to Wayne Mery (:wsmwk) from comment #4)
Trivial severity based on rs' assessement in bug 868746.
Looking at the discussion, I'm not sure if that assessment was entirely correct.
Anyway, Firefox has fixed this, so should we. 2 lines of code to add the quotes:
https://bugzilla.mozilla.org/page.cgi?id=splinter.html&ignore=&bug=868746&attachment=747062
Lilian?
Updated•4 years ago
|
Updated•4 years ago
|
Updated•4 years ago
|
Pushed by mkmelin@iki.fi:
https://hg.mozilla.org/comm-central/rev/ed2e9b0dbf70
Installer should quote the 'uninstallstring' registry value in case a non OS builtin app uses the value. r=thomasD,mkmelin
Comment 9•4 years ago
|
||
Comment on attachment 9191176 [details]
Bug 871084 - Installer should quote the 'uninstallstring' registry value in case a non OS builtin app uses the value. r=thomasD,mkmelin
[Approval Request Comment]
Minor sec issue.
Comment 10•4 years ago
|
||
Comment on attachment 9191176 [details]
Bug 871084 - Installer should quote the 'uninstallstring' registry value in case a non OS builtin app uses the value. r=thomasD,mkmelin
[Triage Comment]
Approved for esr78
Comment 11•4 years ago
|
||
| bugherder uplift | ||
Thunderbird 78.6.1:
https://hg.mozilla.org/releases/comm-esr78/rev/7890076d0aac
Description
•