Closed Bug 1054621 Opened 9 years ago Closed 3 years ago
Create "malicious" media plugins to test GMP sandboxing
48 bytes, text/x-phabricator-request
|Details | Review|
We should have testing that verifies that the GMP sandbox is actually effectively accomplishing sandboxing: load a plugin that (depending on the test case) tries to directly access the filesystem or network, or otherwise escape the sandbox, and then verify that the action in question doesn't succeed. We'll need to be careful about adding cases to this testsuite corresponding to bugs founds later on, because at minimum they'd constitute proof-of-concept exploits for earlier versions, but we can cross that bridge when we come to it.
These bugs are fit and finish issues that might block EME uplift to Aurora.
Move process sandboxing bugs to the new Bugzilla component. (Sorry for the bugspam; filter on 3c21328c-8cfb-4819-9d88-f6e965067350.)
Component: Security → Security: Process Sandboxing
Assignee: nobody → lissyx+mozillians
Status: NEW → ASSIGNED
Pushed by email@example.com: https://hg.mozilla.org/integration/autoland/rev/4cffc89eeda4 Add GMPlugin Sandbox Tests r=handyman,bryce
You need to log in before you can comment on or make changes to this bug.