Red Hat Bugzilla – Bug 156303
FC2 firefox-1.0.3 is really 1.0
Last modified: 2007-11-30 17:11:05 EST
Description of problem:
The new 1.0.3 appears to be very much like 1.0.
According to the about window:
Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.7.5) Gecko/20041109 Firefox/1.0
Version-Release number of selected component (if applicable):
Try this exploit which should only work on firefox versions earlier than 1.0.3.
Ugh, yes. It writes out booom.txt (and booom-1, 2, 3, etc. if you click again).
$ cd ~; ls boo*
booom-1.txt booom-2.txt booom.txt
$ rpm -q firefox
Also, the Extensions window is hosed. It opens a tiny (1x1?) window. If you
console shows these:
popwin has no properties
popwin has no properties
uncaught exception: [Exception... "Component returned failure code: 0x80004005
(NS_ERROR_FAILURE) [nsIStringBundle.GetStringFromName]" nsresult: "0x80004005
(NS_ERROR_FAILURE)" location: "JS frame ::
chrome://browser/content/bookmarks/bookmarks.js :: anonymous :: line 1177"
data: no]uncaught exception: [Exception... "Component returned failure code:
0x80004005 (NS_ERROR_FAILURE) [nsIStringBundle.GetStringFromName]" nsresult:
"0x80004005 (NS_ERROR_FAILURE)" location: "JS frame :: XStringBundle ::
getString :: line 17" data: no]
[Exception... "'ContentLength not available (not a local URL?)' when calling
method: [nsIDOMEventListener::handleEvent]" nsresult: "0x8057001e
(NS_ERROR_XPC_JS_THREW_STRING)" location: "<unknown>" data: no]
Same with Themes.
The Preferences dialog opens, but there are no icons on the side and you can
[Exception... "Component returned failure code: 0x80004005 (NS_ERROR_FAILURE)
[nsIStringBundle.formatStringFromName]" nsresult: "0x80004005
(NS_ERROR_FAILURE)" location: "JS frame :: XStringBundle :: getFormattedString
:: line 33" data: no]
What does 'rpm -V firefox' say? I manually looked at the package and it appears
Ugh, something strange must have been going on.
After I reported the bug, I updated to the 1.0.3 Firefox from FC3 - which
involved more recent versions of pango, freetype and desktop-file-utils, too.
Everything seemed back to normal. I had tried removing and installing the FC2
1.0.3 package several times, also alternating with the previous fedora.us
package, but it was always failing with the same symptoms. So I caved in and
picked the FC3 rpm.
To answer your question, I just removed the FC3 firefox-1.0.3 altogether,
installed the FC2 1.0.3 package and ran rpm -V. No output. Even more puzzling,
it works just fine now, something it never did until I installed the FC3
version. My guess is that something was "fixed" by either the 1.0.3 package for
FC3 or by any of the dependencies I updated.
Should the bug be closed with a COSMICRAYSFIXEDTHISFORME?