1. Welcome to Tacoma World!

    You are currently viewing as a guest! To get full-access, you need to register for a FREE account.

    As a registered member, you’ll be able to:
    • Participate in all Tacoma discussion topics
    • Communicate privately with other Tacoma owners from around the world
    • Post your own photos in our Members Gallery
    • Access all special features of the site

Patch your firefox...

Discussion in 'Technology' started by slodoug, Apr 22, 2021.

  1. Apr 22, 2021 at 9:34 PM
    #1
    slodoug

    slodoug [OP] Well-Known Member

    Joined:
    Jul 21, 2020
    Member:
    #335235
    Messages:
    801
    Gender:
    Male
    Firefox has long had a built-in PDF viewer, allowing users to view PDF files in the browser without having to install a third-party application. In addition to the other weird things PDF files can contain, one of them is JavaScript. Putatively offered as a way to create self-validating forms, this scripting capability has been abused over the decades in just about every way you can imagine. Firefox's built-in viewer, although it has apparently had the ability to execute embedded JS for some time, never turned that feature on, making it a safe(r) way to open PDFs... Until now. The newly released Firefox version 88 has flipped that switch, and will now blithely execute JavaScript embedded in PDFs. Firefox's main preferences dialog offers no control for turning this "feature" off.

    To turn off JavaScript execution in PDFs: Enter about:config in the address bar; click "I'll be careful." In the search box near the top, enter pdfjs.enableScripting. Change the setting to False. Close the page.
     
    eddyizm, Biscuits and 05Taco4x4 like this.
  2. Apr 23, 2021 at 7:23 AM
    #2
    Biscuits

    Biscuits Thorny Crown of Entropy

    Joined:
    Aug 8, 2010
    Member:
    #41397
    Messages:
    15,582
    Gender:
    Male
    Swiggity swangin' biggity bangin'
    That's a hell of a whoops on FF's end.
     

Products Discussed in

To Top