bugzilla.mozilla.org will be intermittently unavailable on Saturday, March 24th, from 16:00 until 20:00 UTC.


Security Assurance: Review Request
6 years ago
6 years ago


(Reporter: mgoodwin, Assigned: mgoodwin)


(Depends on: 1 bug, Blocks: 1 bug)


(Whiteboard: [completed secreview][Score:64:High])



6 years ago
1. Who is/are the point of contact(s) for this review?

snorp, Mark Finkle

2. Please provide a short description of the feature / application (e.g. problem solved, use cases, etc.):

This is a new updater for android.

3. Please provide links to additional information (e.g. feature page, wiki) if available and not yet included in feature description:

Not aware of any currently.

4. Does this request block another bug? If so, please indicate the bug number
5. This review will be scheduled amongst other requested reviews. What is the urgency or needed completion date of this review?
6. Please answer the following few questions: (Note: If you are asked to describe anything, 1-2 sentences shall suffice.)
6a. Does this feature or code change affect Firefox, Thunderbird or any product or service the Mozilla ships to end users?


6b. Are there any portions of the project that interact with 3rd party services?

Not sure. Snorp?

6c. Will your application/service collect user data? If so, please describe 


7. If you feel something is missing here or you would like to provide other kind of feedback, feel free to do so here (no limits on size):
8. Desired Date of review (if known from https://mail.mozilla.com/home/ckoenig@mozilla.com/Security%20Review.html) and whom to invite.
Whiteboard: [pending secreview][triage needed]
(In reply to Mark Goodwin [:mgoodwin] from comment #0)
> 6b. Are there any portions of the project that interact with 3rd party
> services?
> Not sure. Snorp?

Whiteboard: [pending secreview][triage needed] → [pending secreview][start yyyy-mm-dd][target yyyy-mm-dd]

Comment 3

6 years ago
Risk/Priority Ranking Exercise https://wiki.mozilla.org/Security/RiskRatings

Priority: 4 (P2) - Mozilla Initiative

Operational: 3 - Major
User: 5 - Blocker
Privacy: 5 - Blocker
Engineering: 3 - Major
Reputational: 4 - Critical

Priority Score: 64
Whiteboard: [pending secreview][start yyyy-mm-dd][target yyyy-mm-dd] → [completed secreview]


6 years ago
Whiteboard: [completed secreview] → [completed secreview][Score:64:High]

Comment 4

6 years ago
The Play check (see bug 794963) is a nice to have; maybe not strictly a blocker
Last Resolved: 6 years ago
Depends on: 794963
Resolution: --- → FIXED
You need to log in before you can comment on or make changes to this bug.