CSP-RO reports violations for dynamically loaded scripts with valid nonce if URL redirects
Categories
(Core :: DOM: Security, defect, P2)
Tracking
()
People
(Reporter: robclap8, Assigned: sstreich)
References
(Blocks 1 open bug)
Details
(Keywords: csectype-disclosure, sec-moderate, Whiteboard: [domsecurity-active])
User Story
*** See comment 12 for the correct STRs. ***
Attachments
(1 file)
Updated•7 years ago
|
Comment 1•7 years ago
|
||
Comment 3•7 years ago
|
||
Updated•7 years ago
|
Comment 4•7 years ago
|
||
Comment 5•7 years ago
|
||
Comment 7•7 years ago
|
||
Comment 10•7 years ago
|
||
Comment 11•7 years ago
|
||
Comment 12•7 years ago
|
||
Comment 13•7 years ago
|
||
Comment 14•7 years ago
|
||
Comment 15•7 years ago
|
||
Updated•7 years ago
|
Comment 16•7 years ago
|
||
Updated•7 years ago
|
Reporter | ||
Comment 17•6 years ago
|
||
Hi, is there any update on this? This still happens in FF65.
Comment 18•6 years ago
|
||
(In reply to robclap8 from comment #17)
Hi, is there any update on this? This still happens in FF65.
Sorry for the lag on this one - I'll try to get to it ASAP.
Comment 19•6 years ago
|
||
Probably (most likely) that bug got fixed by Bug 965637 or some of its dependencies (prework) - if so, we should land a test within this bug.
Assignee | ||
Comment 20•6 years ago
|
||
Assignee | ||
Updated•6 years ago
|
![]() |
||
Comment 21•6 years ago
|
||
![]() |
||
Comment 22•6 years ago
|
||
Backed out for debug-test-verify-e10s failure at dom/security/test/csp/test_bug1505412.html:
https://hg.mozilla.org/integration/autoland/rev/170d5cc410a478d14953f22217eda164fc71e87b
Push with failures: https://treeherder.mozilla.org/#/jobs?repo=autoland&group_state=expanded&resultStatus=testfailed%2Cbusted%2Cexception%2Cusercancel%2Cretry%2Csuperseded&revision=983ff93a11ad7c08fd65a507dedf01526e4ae682
Failure log dom/security/test/csp/test_bug1505412.html: https://treeherder.mozilla.org/logviewer.html#?job_id=261963462&repo=autoland
[task 2019-08-16T08:35:25.628Z] 08:35:25 INFO - TEST-START | dom/security/test/csp/test_bug1505412.html
[...]
[task 2019-08-16T08:35:40.017Z] 08:35:40 INFO - GECKO(1084) | [Parent 1084, StreamTrans #6] WARNING: 'NS_FAILED(rv)', file /builds/worker/workspace/build/src/modules/libjar/nsJARChannel.cpp, line 371
[task 2019-08-16T08:35:40.017Z] 08:35:40 INFO - GECKO(1084) | [Parent 1084, Main Thread] WARNING: NS_ENSURE_SUCCESS(rv, rv) failed with result 0x80520012: file /builds/worker/workspace/build/src/modules/libjar/nsJARChannel.cpp, line 994
[task 2019-08-16T08:40:25.641Z] 08:40:25 INFO - TEST-INFO | started process screentopng
[task 2019-08-16T08:40:25.877Z] 08:40:25 INFO - TEST-INFO | screentopng: exit 0
[task 2019-08-16T08:40:25.878Z] 08:40:25 INFO - TEST-UNEXPECTED-FAIL | dom/security/test/csp/test_bug1505412.html | Test timed out.
[task 2019-08-16T08:40:25.879Z] 08:40:25 INFO - SimpleTest.ok@SimpleTest/SimpleTest.js:275:18
[task 2019-08-16T08:40:25.879Z] 08:40:25 INFO - reportError@SimpleTest/TestRunner.js:121:22
[task 2019-08-16T08:40:25.880Z] 08:40:25 INFO - TestRunner._checkForHangs@SimpleTest/TestRunner.js:142:18
[task 2019-08-16T08:40:25.880Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.880Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.881Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.881Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.881Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.881Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.882Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.882Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.882Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.882Z] 08:40:25 INFO - setTimeout handlerTestRunner._checkForHangs@SimpleTest/TestRunner.js:170:15
[task 2019-08-16T08:40:25.883Z] 08:40:25 INFO - TestRunner.resetTests@SimpleTest/TestRunner.js:406:14
[task 2019-08-16T08:40:25.883Z] 08:40:25 INFO - TestRunner.runNextTest@SimpleTest/TestRunner.js:492:22
[task 2019-08-16T08:40:25.883Z] 08:40:25 INFO - TestRunner.testUnloaded@SimpleTest/TestRunner.js:686:20
[task 2019-08-16T08:40:25.883Z] 08:40:25 INFO - @SimpleTest/iframe-between-tests.html:11:10
Also perma failing a mochitest chunk on Linux x64 debug + Quantumrender debug: https://treeherder.mozilla.org/logviewer.html#?job_id=261974908&repo=autoland
Last folder executed is dom/security/test/sri/
Assignee | ||
Comment 23•6 years ago
|
||
Fixed the test, should work now :)
![]() |
||
Comment 24•6 years ago
|
||
![]() |
||
Comment 25•6 years ago
|
||
Backed out because test_bug1505412.html fails:
https://hg.mozilla.org/integration/autoland/rev/dd1ba2689a3b98d3f6b4bb34342766d7085e42d3
Push which ran failing test: https://treeherder.mozilla.org/#/jobs?repo=autoland&resultStatus=testfailed%2Cbusted%2Cexception&revision=4fe91f01854e23e26382d491b4feae4bca13a222
Failure log: https://treeherder.mozilla.org/logviewer.html#?job_id=262961545&repo=autoland
TEST-UNEXPECTED-FAIL | dom/security/test/csp/test_bug1505412.html | Test timed out.
Assignee | ||
Updated•6 years ago
|
![]() |
||
Comment 26•6 years ago
|
||
![]() |
||
Comment 27•6 years ago
|
||
Comment 28•6 years ago
|
||
If you want to nominate this test for a Beta backport, it probably wouldn't be a bad idea.
Updated•5 years ago
|
Description
•