green ev ssl bar stays visible with wrong url on slow computer

Bug #396117 reported by David Mandelberg
6
This bug affects 1 person
Affects Status Importance Assigned to Milestone
firefox-3.0 (Ubuntu)
New
Undecided
Unassigned

Bug Description

Binary package hint: firefox-3.0

On a slow or overloaded computer, the green EV SSL bar stays visible for a short time after switching tabs. There could be a slight security risk, especially if the tab switched to is a phishing scam of the previous tab.

Steps to reproduce:
  1. Open 2 tabs, one with EV SSL and one without. Switch to the one with.
  2. Make firefox run slowly so the bug is visible for long enough.
  3. Switch to the other tab.

What happens:
  1. URL changes to reflect the new tab and the new tab is highlighted on the tab bar
  2. EV SSL bar disappears

What should happen:
  1. EV SSL bar disappears
  2. URL changes and the new tab is highlighted

$ lsb_release -rd
Description: Ubuntu 9.04
Release: 9.04

$ apt-cache policy firefox
firefox:
  Installed: 3.0.11+build2+nobinonly-0ubuntu0.9.04.1
  Candidate: 3.0.11+build2+nobinonly-0ubuntu0.9.04.1
  Version table:
 *** 3.0.11+build2+nobinonly-0ubuntu0.9.04.1 0
        500 http://us.archive.ubuntu.com jaunty-updates/main Packages
        500 http://security.ubuntu.com jaunty-security/main Packages
        100 /var/lib/dpkg/status
     3.0.8+nobinonly-0ubuntu3 0
        500 http://us.archive.ubuntu.com jaunty/main Packages

To post a comment you must log in.
This report contains Public information  
Everyone can see this information.

Other bug subscribers

Remote bug watches

Bug watches keep track of this bug in other bug trackers.