Open Bug 1505832 (fission-site-sandbox) Opened 7 years ago Updated 5 months ago

[meta] Fission Site Sandboxing Improvements

Categories

(Core :: Security: Process Sandboxing, task)

task

Tracking

()

Fission Milestone Future

People

(Reporter: tjr, Unassigned)

References

(Depends on 6 open bugs, Blocks 1 open bug)

Details

(Keywords: meta)

This bug is a meta for ensuring that a compromise of evil.com's process cannot allow them to learn data about any other origin or perform actions they are not entitled to do. It encompasses the very large fission-ipc component, but there are additional bugs that block this that are not strictly about origin checks in IPC methods.
Alias: fission-origin-sandbox
Depends on: fission-ipc
Depends on: 1156835
Depends on: 1506198
Depends on: 1524994
Depends on: orb

Fission Future because Nika says this doesn't block shipping Fission MVP.

Fission Milestone: --- → Future
Type: enhancement → task
Alias: fission-origin-sandbox → fission-site-sandbox
Summary: [meta] Fission Origin Sandboxing → [meta] Fission Site Sandboxing
Depends on: 777980
Keywords: parity-chrome
Depends on: 1735618
Depends on: 827853
Severity: normal → S3
Depends on: 1800149
Depends on: 1899154

Changing the title to reflect that we have Fission Site Sandboxing, but like all software it's not bug free.

We think the remaining cases here are not concerning enough to be worthy of our (immediate!) attention. But we're keeping this metabug open in case someone finds something serious, so they can be centrally linked.

We consider it security vulnerability if a compromised renderer can do bad things to other sites, and we would consider it for a bug bounty if it's especially bad. If it's stealing browser history or impersonating a Clear-Site-Data request or something like that - it's not a priority, but we'd still link it here to keep track of everything we know we can improve.

OS: Unspecified → All
Hardware: Unspecified → All
Summary: [meta] Fission Site Sandboxing → [meta] Fission Site Sandboxing Improvements
Version: unspecified → Trunk
You need to log in before you can comment on or make changes to this bug.