Red Hat Bugzilla – Bug 1479211
CVE-2017-7794 Mozilla: Linux file truncation via sandbox broker (MFSA 2017-18)
Last modified: 2017-08-24 03:35:17 EDT
On linux systems, if the content process is compromised, the sandbox broker will allow files to be truncated even though the sandbox explicitly only has read access to the local file system and no write permissions. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2017-18/#CVE-2017-7794 Acknowledgements: Name: the Mozilla project Upstream: Jann Horn