Settings

Theme

Don't let websites overwrite clipboard in Firefox

superuser.com

33 points by weird_user 2 years ago · 3 comments

Reader

not_your_vase 2 years ago

Just a few weeks ago there was an interesting thread on the oss-sec list[1], which is tangentially related - a clipboard-pastejacking issue was reported to Firefox, who rejected the bug report.

1: https://seclists.org/oss-sec/2023/q4/132

  • idbehold 2 years ago

    It's X11 which is asking applications what was selected when determining what will be pasted from middle click. To be secure X11 should be maintaining its own buffer which can only be updated via user interaction instead of relying on every application to implement this security measure themselves.

    It's also a security issue with the shells that are interpreting a pasted new-line character. The author of that post is delusional to claim that none of the blame should be placed on the shells.

  • fyokdrigd 2 years ago

    mozilla (and chrome to be fair is the same) have more product managers closing bugs than engineers/contributors.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection