Closed Bug 35402 Opened 25 years ago Closed 24 years ago

Make skins script-safe.

Categories

(Core :: XUL, defect, P3)

defect

Tracking

()

VERIFIED FIXED

People

(Reporter: trudelle, Assigned: hyatt)

References

Details

(Whiteboard: [nsbeta2+] 6/1 3 days)

As discussed last week, we need to implement a flag that prevents skins from executing scripts.
Blocks: 29160
Keywords: skins
*** Bug 18237 has been marked as a duplicate of this bug. ***
*** Bug 9681 has been marked as a duplicate of this bug. ***
Status: NEW → ASSIGNED
Whiteboard: 3 days
Whiteboard: 3 days → 3 days, 4/28
Target Milestone: --- → M16
Whiteboard: 3 days, 4/28 → 3 days, 5/2
No longer blocks: 29160
demoting from feature to bug, moving to m18. This will leave skins exploitable for PR2: if that is a serious problem, please speak up now!
Summary: [feature] Make skins script-safe. → Make skins script-safe.
Whiteboard: 3 days, 5/2 → 3 days
Target Milestone: M16 → M18
After the "I Love You" Worm, I would suggest rethinking moving this to M-18. The Microserfs are busy looking for problems in other aps to try to take some of the heat off Outlook. Why make it easy for them?
I agree...this looks like an easy hole to close (??) Let's get it into PR2.
I don't think 3 days of Hyatt's time qualifies as 'easy', but okay, nominating for nsbeta2. I'm not convinced that spending time on this rather than stability will be worthwhile, given the small chance that someone will try to exploit it in PR2.
Keywords: nsbeta2
this is not terribly easy.... xbl will have to be heavily patched.
[nsbeta2+], please check with Hangas to ensure that we will be getting 3rd party skins for beta2.
Whiteboard: 3 days → [nsbeta2+] 6/1 3 days
m16
Target Milestone: M18 → M16
fixed.
Status: ASSIGNED → RESOLVED
Closed: 24 years ago
Resolution: --- → FIXED
verified fixed.
Status: RESOLVED → VERIFIED
Keywords: skins
Component: XP Toolkit/Widgets: XUL → XUL
QA Contact: jrgmorrison → xptoolkit.widgets
You need to log in before you can comment on or make changes to this bug.