Changeset 276012 in webkit
- Timestamp:
- Apr 15, 2021, 2:07:44 AM (5 years ago)
- Location:
- trunk
- Files:
-
- 3 added
- 4 edited
-
LayoutTests/ChangeLog (modified) (1 diff)
-
LayoutTests/http/tests/security/resources/sandbox-iframe-and-blob-frame.html (added)
-
LayoutTests/http/tests/security/sandbox-iframe-and-blob.https-expected.txt (added)
-
LayoutTests/http/tests/security/sandbox-iframe-and-blob.https.html (added)
-
LayoutTests/platform/win/TestExpectations (modified) (1 diff)
-
Source/WebCore/ChangeLog (modified) (1 diff)
-
Source/WebCore/loader/PolicyChecker.cpp (modified) (2 diffs)
Legend:
- Unmodified
- Added
- Removed
-
trunk/LayoutTests/ChangeLog
r276011 r276012 1 2021-04-15 Youenn Fablet <youenn@apple.com> 2 3 REGRESSION(Safari 14): iframe with blob url does not work with sandboxing 4 https://bugs.webkit.org/show_bug.cgi?id=222312 5 <rdar://problem/74927624> 6 7 Reviewed by Chris Dumez. 8 9 * http/tests/security/resources/sandbox-iframe-and-blob-frame.html: Added. 10 * http/tests/security/sandbox-iframe-and-blob.https-expected.txt: Added. 11 * http/tests/security/sandbox-iframe-and-blob.https.html: Added. 12 * platform/win/TestExpectations: 13 1 14 2021-04-15 Diego Pino Garcia <dpino@igalia.com> 2 15 -
trunk/LayoutTests/platform/win/TestExpectations
r275917 r276012 2263 2263 http/tests/security/contentSecurityPolicy/report-document-uri-blob.html [ Skip ] 2264 2264 fast/frames/restoring-page-cache-should-not-run-scripts-via-style-update.html [ Skip ] 2265 http/tests/security/sandbox-iframe-and-blob.https.html [ Skip ] 2265 2266 2266 2267 # Clear Key not implemented -
trunk/Source/WebCore/ChangeLog
r276010 r276012 1 2021-04-15 Youenn Fablet <youenn@apple.com> 2 3 REGRESSION(Safari 14): iframe with blob url does not work with sandboxing 4 https://bugs.webkit.org/show_bug.cgi?id=222312 5 <rdar://problem/74927624> 6 7 Reviewed by Chris Dumez. 8 9 In https://trac.webkit.org/r275884, we correctly compute whether a blob is to be considered secure or not. 10 For that, we need to have the blob URL registered with its document origin. 11 Update PolicyChecker to properly register the temporoary blob URL with its document origin. 12 13 Test: http/tests/security/sandbox-iframe-and-blob.https.html 14 15 * loader/PolicyChecker.cpp: 16 (WebCore::FrameLoader::PolicyChecker::extendBlobURLLifetimeIfNecessary const): 17 1 18 2021-04-15 Carlos Garcia Campos <cgarcia@igalia.com> 2 19 -
trunk/Source/WebCore/loader/PolicyChecker.cpp
r272122 r276012 48 48 #include "HTMLPlugInElement.h" 49 49 #include "Logging.h" 50 #include "ThreadableBlobRegistry.h" 50 51 #include <wtf/CompletionHandler.h> 51 52 … … 112 113 // Create a new temporary blobURL in case this one gets revoked during the asynchronous navigation policy decision. 113 114 URL temporaryBlobURL = BlobURL::createPublicURL(&m_frame.document()->securityOrigin()); 114 blobRegistry().registerBlobURL(temporaryBlobURL, request.url());115 ThreadableBlobRegistry::registerBlobURL(&m_frame.document()->securityOrigin(), temporaryBlobURL, request.url()); 115 116 request.setURL(temporaryBlobURL); 116 117 if (loader) 117 118 loader->request().setURL(temporaryBlobURL); 118 119 return CompletionHandler<void()>([temporaryBlobURL = WTFMove(temporaryBlobURL)] { 119 blobRegistry().unregisterBlobURL(temporaryBlobURL);120 ThreadableBlobRegistry::unregisterBlobURL(temporaryBlobURL); 120 121 }); 121 122 }
Note:
See TracChangeset
for help on using the changeset viewer.