Title: [272973] trunk/Source/WebKit
Revision
272973
Author
pvol...@apple.com
Date
2021-02-16 18:33:34 -0800 (Tue, 16 Feb 2021)

Log Message

Update syntax in the sandbox bootstrap filter
https://bugs.webkit.org/show_bug.cgi?id=221913
<rdar://problem/73463985>

Reviewed by Brent Fulgham.

Update syntax in the sandbox bootstrap filter on macOS and iOS.

* Resources/SandboxProfiles/ios/com.apple.WebKit.WebContent.sb:
* WebProcess/com.apple.WebProcess.sb.in:

Modified Paths

Diff

Modified: trunk/Source/WebKit/ChangeLog (272972 => 272973)


--- trunk/Source/WebKit/ChangeLog	2021-02-17 02:31:30 UTC (rev 272972)
+++ trunk/Source/WebKit/ChangeLog	2021-02-17 02:33:34 UTC (rev 272973)
@@ -1,3 +1,16 @@
+2021-02-16  Per Arne  <pvol...@apple.com>
+
+        Update syntax in the sandbox bootstrap filter
+        https://bugs.webkit.org/show_bug.cgi?id=221913
+        <rdar://problem/73463985>
+
+        Reviewed by Brent Fulgham.
+
+        Update syntax in the sandbox bootstrap filter on macOS and iOS.
+
+        * Resources/SandboxProfiles/ios/com.apple.WebKit.WebContent.sb:
+        * WebProcess/com.apple.WebProcess.sb.in:
+
 2021-02-16  Brady Eidson  <beid...@apple.com>
 
         REGRESSION (r271493 ) Crash in +[NSAttributedString(WKPrivate) _loadFromHTMLWithOptions:contentLoader:completionHandler:] on background thread

Modified: trunk/Source/WebKit/Resources/SandboxProfiles/ios/com.apple.WebKit.WebContent.sb (272972 => 272973)


--- trunk/Source/WebKit/Resources/SandboxProfiles/ios/com.apple.WebKit.WebContent.sb	2021-02-17 02:31:30 UTC (rev 272972)
+++ trunk/Source/WebKit/Resources/SandboxProfiles/ios/com.apple.WebKit.WebContent.sb	2021-02-17 02:33:34 UTC (rev 272973)
@@ -1289,17 +1289,17 @@
 (when (defined? 'mach-bootstrap)
     (allow mach-bootstrap
         (apply-message-filter
-            (deny xpc-message-send (with telemetry))
-            (allow xpc-message-send (message-number 206))
-            (allow xpc-message-send (message-number 207))
-            (allow xpc-message-send (message-number 711))
-            (allow xpc-message-send (message-number 712))
-            (allow xpc-message-send (message-number 718))
-            (allow xpc-message-send (message-number 800))
-            (allow xpc-message-send (message-number 802))
-            (allow xpc-message-send (message-number 803))
-            (allow xpc-message-send (message-number 804))
-            (allow xpc-message-send (message-number 805))
+            (deny mach-message-send (with telemetry))
+            (allow mach-message-send (message-number 206))
+            (allow mach-message-send (message-number 207))
+            (allow mach-message-send (message-number 711))
+            (allow mach-message-send (message-number 712))
+            (allow mach-message-send (message-number 718))
+            (allow mach-message-send (message-number 800))
+            (allow mach-message-send (message-number 802))
+            (allow mach-message-send (message-number 803))
+            (allow mach-message-send (message-number 804))
+            (allow mach-message-send (message-number 805))
         )
     )
 )

Modified: trunk/Source/WebKit/WebProcess/com.apple.WebProcess.sb.in (272972 => 272973)


--- trunk/Source/WebKit/WebProcess/com.apple.WebProcess.sb.in	2021-02-17 02:31:30 UTC (rev 272972)
+++ trunk/Source/WebKit/WebProcess/com.apple.WebProcess.sb.in	2021-02-17 02:33:34 UTC (rev 272973)
@@ -1671,8 +1671,13 @@
 (if (and (equal? (param "ENABLE_SANDBOX_MESSAGE_FILTER") "YES") (defined? 'mach-bootstrap))
     (allow mach-bootstrap
         (apply-message-filter
+#if __MAC_OS_X_VERSION_MIN_REQUIRED >= 120000
+            (deny mach-message-send (with telemetry))
+            (allow mach-message-send (message-number
+#else
             (deny xpc-message-send (with telemetry))
             (allow xpc-message-send (message-number
+#endif
                 204
                 207
                 301
_______________________________________________
webkit-changes mailing list
webkit-changes@lists.webkit.org
https://lists.webkit.org/mailman/listinfo/webkit-changes

Reply via email to