The Security Slider values were set based on a review of historical vulnerabilities. We should try to skim through https://www.mozilla.org/security/known-vulnerabilities/firefox.html from FF31 to FF38 to see if any new patterns have emerged, and if we should add other prefs to the slider.
If this proves useful, we should also make this part of our rebasing process.
One tricky bit will be untangling all of the "Miscellaneous memory safety hazard" bugs..
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information
Child items 0
Show closed items
No child items are currently assigned. Use child items to break down this issue into smaller parts.
Linked items 0
Link issues together to show that they're related.
Learn more.
Trac: Keywords: TorBrowserTeam201603 deleted, GeorgKoppen201606, TorBrowserTeam201606 added Status: new to assigned Owner: tbb-team to gk Summary: Review vulnerability history from FF31 to FF38 to Review vulnerability history from FF31 to FF45 Reviewer: N/AtoN/A
Here are the combined results showing the affected components up to and including ESR45. Counted are sec-high and sec-crit rated vulnerabilities. Components with a single issue are omitted. Subcomponents are merged in almost all cases but are visible in the attached documents.
One interesting find is the Graphics component with 38 vulnerabilities which is missing in the original iSEC report. Maybe that corresponds to the Undetermined 5 or there just have not been any vulnerabilities in that time frame. Anyway, the bulk of those vulnerabilities is related to Graphite (more than 50% of the bugs found in this component are related to that library) which is why we have using that library disabled by default.
Another notable find is that MSEs are affected, too, by critical bugs and should thus be part of our security slider treatment as well (see: #19200 (moved) for the respective bug).
Apart from that I think we are fine with our current security slider settings even though bugs related to it exist, e.g. #19210 (moved).
Trac: Resolution: N/Ato fixed Status: assigned to closed