MediaError message property leaks cross-origin response status
Categories
(Core :: DOM: Security, defect, P3)
Tracking
()
People
(Reporter: gunes.acar, Assigned: sstreich)
References
Details
(4 keywords, Whiteboard: [domsecurity-backlog2][adv-main80+])
Attachments
(5 files)
Updated•7 years ago
|
Updated•5 years ago
|
Assignee | ||
Comment 9•5 years ago
|
||
Updated•5 years ago
|
Updated•5 years ago
|
Comment 11•5 years ago
|
||
Comment 12•5 years ago
•
|
||
Backed out for perma failures.
Logs:
https://treeherder.mozilla.org/logviewer.html#/jobs?job_id=309729753&repo=autoland&lineNumber=4285
https://treeherder.mozilla.org/logviewer.html#/jobs?job_id=309728609&repo=autoland&lineNumber=3752
https://treeherder.mozilla.org/logviewer.html#/jobs?job_id=309734962&repo=autoland&lineNumber=2289
Backout: https://hg.mozilla.org/integration/autoland/rev/df41fdf433a3624be684bd225eae90e3c452c509
Assignee | ||
Comment 13•5 years ago
|
||
Fixed the problem, reftest is now green :)
https://treeherder.mozilla.org/#/jobs?repo=try&revision=9ddfa699aae7de36ae3e5b71cf612837bb926388
Comment 14•5 years ago
|
||
Comment 15•5 years ago
|
||
bugherder |
Comment 16•5 years ago
|
||
Comment on attachment 9157433 [details]
Bug 1450853 - Use Generic Error for 3rdparty MediaElement r=ckerschb
ESR Uplift Approval Request
- If this is not a sec:{high,crit} bug, please state case for ESR consideration: We would like to have this patch in the next Tor Browser 10 based on ESR78. Uplifting it would mean one less patch to backport for us.
- User impact if declined: Tor Browser devs will have to backport the patch on top of ESR78 branch.
- Fix Landed on Version: 80
- Risk to taking this patch: Low
- Why is the change risky/not risky? (and alternatives if risky): The patch is minimal and only changes the error string for 3rd party loads.
- String or UUID changes made by this patch:
Comment 17•5 years ago
|
||
Comment on attachment 9157433 [details]
Bug 1450853 - Use Generic Error for 3rdparty MediaElement r=ckerschb
approved for 78.2esr
Comment 18•5 years ago
|
||
bugherder uplift |
Updated•5 years ago
|
Comment 20•5 years ago
|
||
Updated•5 years ago
|
Updated•4 years ago
|
Updated•9 months ago
|
Description
•