MozillaSecurity / ffpuppet

A Python module that aids in the automation of Firefox at the process level
Mozilla Public License 2.0
31 stars 7 forks source link

Consider randomizing the resolution passed to xvfb #7

Open pyoor opened 7 years ago

pyoor commented 7 years ago

It might be worth considering setting a random resolution to xvfb as this might affect layout. Similar concept to the TTF Fuzzer outlined here:

https://media.blackhat.com/bh-eu-12/Lee/bh-eu-12-Lee-GDI_Font_Fuzzing-WP.pdf

ghost commented 7 years ago

Agree, eg: https://www.mozilla.org/en-US/security/advisories/mfsa2015-107/