Comment 34 for bug 1496277

Revision history for this message
Zane Bitter (zaneb) wrote : Re: template-validate may read server local files (CVE-2015-5295)

If it wasn't referencing a private security bug I believe it would definitely be extremely non-obvious. With the reference to a hidden bug... I think a determined engineer could probably figure it out.

Maybe post a review referencing only bug 1508115 and mark it WIP; when it's got the o-k from a couple of cores upload a new patchset referencing this bug in the commit message and fast-merge it.