Since the latest upgrade of Firefox to 49.0, it will need read access to @{PROC}/net/arp

I don't know what the security implications are, so I don't know if we want to give read access to explicitely deny it. Both seem to work.

Franck (alci) wrote :
Vincas Dargis (talkless) wrote :

Maybe we should ask Firefox devs what they mean by that? net/arp contains rather sensitive info...

Franck (alci) wrote :

Ok, I just asked on firefox-dev mailing list...

Franck (alci) wrote :

Motivation for this new requirement is:

## Why

 Each particular network your computer and browser run in has its own set of
 network conditions, routers, proxies and MITM situations.

 Changing between networks also changes proxies. Intercepting or explicit,
 willing or unwilling, HTTP or even HTTPS with custom installed trust-roots.
 This makes the web content cache, the cookie store and others to save
 contents from one network that is potentially different than what is received
 over other networks. It can lead to content pollution and information leaks,
 on purpose by malicious actors or just by mistake.

see the details here

Thomas Mayer (thomas303) wrote :

A patch which might fix this issue, too, is available at 1659988.

Everyone affected, please give it a try and report back.

Vincas Dargis (talkless) wrote :

I've tried patched version from 1659988, it works fine.

