Comment 10 for bug 978896

Revision history for this message
Thierry Carrez (ttx) wrote :

@Thomas: not yet, we need to work on statement of impact first.

@Paul: Since you did the confirmation, could you describe the attack vector and impact more precisely ? In comment #6 you say it's minor since it requires the ability to pre-set cookies, and in comment #8 you say it's a serious issue...