G'Day, "Pete Collins" <[EMAIL PROTECTED]> wrote in message news:[EMAIL PROTECTED] > Looking into this issue for Linspire Internet Suite we maintain, looks > like the fix for this exploit > http://secunia.com/multiple_browsers_frame_injection_vulnerability_test/ > > is just a simple pref setting ... > > pref("browser.frame.validate_origin", true);
When I tried this by setting the value in the URL 'about:config' it had no affect. Did I do something wrong or does this not work? Thanks Alec Clews <[EMAIL PROTECTED] > _______________________________________________ Mozilla-security mailing list [email protected] http://mail.mozilla.org/listinfo/mozilla-security
