Closed
Bug 1363179
Opened 8 years ago
Closed 8 years ago
[mac] blacklist read access to /Volumes at level 3
Categories
(Core :: Security: Process Sandboxing, enhancement)
Tracking
()
RESOLVED
FIXED
mozilla55
| Tracking | Status | |
|---|---|---|
| firefox55 | --- | fixed |
People
(Reporter: Alex_Gaynor, Assigned: Alex_Gaynor)
References
Details
(Whiteboard: sbmc2)
Attachments
(1 file)
I don't think this can be used to access `/Users` or anything, since `/Volumes/Macintosh HD` is a symlink to `/`, but it could be used to access anything on an external HDD or USB drive.
| Assignee | ||
Updated•8 years ago
|
Whiteboard: sbmc2
| Comment hidden (mozreview-request) |
Comment 2•8 years ago
|
||
| mozreview-review | ||
Comment on attachment 8867339 [details]
Bug 1363179 - do not allow content processes to read from /Volumes on macOS
https://reviewboard.mozilla.org/r/138860/#review142206
Attachment #8867339 -
Flags: review?(haftandilian) → review+
| Assignee | ||
Updated•8 years ago
|
Keywords: checkin-needed
| Assignee | ||
Updated•8 years ago
|
Assignee: nobody → agaynor
Pushed by ryanvm@gmail.com:
https://hg.mozilla.org/integration/autoland/rev/02f1025c91f8
do not allow content processes to read from /Volumes on macOS r=haik
Keywords: checkin-needed
Comment 4•8 years ago
|
||
| bugherder | ||
Status: NEW → RESOLVED
Closed: 8 years ago
status-firefox55:
--- → fixed
Resolution: --- → FIXED
Target Milestone: --- → mozilla55
You need to log in
before you can comment on or make changes to this bug.
Description
•