Title: [259201] trunk/Source/WebKit
Revision
259201
Author
[email protected]
Date
2020-03-30 08:53:10 -0700 (Mon, 30 Mar 2020)

Log Message

NetworkConnectionToWebProcess::registerFileBlobURL should validate its parameters
<https://webkit.org/b/209713>
<rdar://problem/60097168>

Reviewed by Youenn Fablet.

* NetworkProcess/NetworkConnectionToWebProcess.cpp:
(WebKit::NetworkConnectionToWebProcess::registerFileBlobURL):
- Add message check to validate `url` parameter.

Modified Paths

Diff

Modified: trunk/Source/WebKit/ChangeLog (259200 => 259201)


--- trunk/Source/WebKit/ChangeLog	2020-03-30 14:48:38 UTC (rev 259200)
+++ trunk/Source/WebKit/ChangeLog	2020-03-30 15:53:10 UTC (rev 259201)
@@ -1,3 +1,15 @@
+2020-03-30  David Kilzer  <[email protected]>
+
+        NetworkConnectionToWebProcess::registerFileBlobURL should validate its parameters
+        <https://webkit.org/b/209713>
+        <rdar://problem/60097168>
+
+        Reviewed by Youenn Fablet.
+
+        * NetworkProcess/NetworkConnectionToWebProcess.cpp:
+        (WebKit::NetworkConnectionToWebProcess::registerFileBlobURL):
+        - Add message check to validate `url` parameter.
+
 2020-03-30  Per Arne Vollan  <[email protected]>
 
         [Cocoa] Sleep disabling should be performed in the UI process

Modified: trunk/Source/WebKit/NetworkProcess/NetworkConnectionToWebProcess.cpp (259200 => 259201)


--- trunk/Source/WebKit/NetworkProcess/NetworkConnectionToWebProcess.cpp	2020-03-30 14:48:38 UTC (rev 259200)
+++ trunk/Source/WebKit/NetworkProcess/NetworkConnectionToWebProcess.cpp	2020-03-30 15:53:10 UTC (rev 259201)
@@ -732,6 +732,8 @@
 
 void NetworkConnectionToWebProcess::registerFileBlobURL(const URL& url, const String& path, SandboxExtension::Handle&& extensionHandle, const String& contentType)
 {
+    NETWORK_PROCESS_MESSAGE_CHECK(!url.isEmpty());
+
     auto* session = networkSession();
     if (!session)
         return;
_______________________________________________
webkit-changes mailing list
[email protected]
https://lists.webkit.org/mailman/listinfo/webkit-changes

Reply via email to