<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>113011</bug_id>
          
          <creation_ts>2013-03-22 00:01:00 -0700</creation_ts>
          <short_desc>Please restore ValueCheck functionality in WebCore</short_desc>
          <delta_ts>2013-04-05 10:33:15 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>Web Template Framework</component>
          <version>528+ (Nightly build)</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>NEW</bug_status>
          <resolution></resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords></keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Alexey Proskuryakov">ap</reporter>
          <assigned_to name="Nobody">webkit-unassigned</assigned_to>
          <cc>abarth</cc>
    
    <cc>benjamin</cc>
    
    <cc>eric</cc>
    
    <cc>mjs</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>861158</commentid>
    <comment_count>0</comment_count>
    <who name="Alexey Proskuryakov">ap</who>
    <bug_when>2013-03-22 00:01:00 -0700</bug_when>
    <thetext>Changes in bug 112831 yesterday disabled almost all ValueCheck security checks in WebCore. They need to be restored.

Please see Maciej&apos;s suggestion in bug 112873: &quot;It sounds like it will be possible to fix the StringImpl/AtomicStringImpl cases once the new statically allocated StringImpl&apos;s return true from isStatic().&quot;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>863059</commentid>
    <comment_count>1</comment_count>
    <who name="Alexey Proskuryakov">ap</who>
    <bug_when>2013-03-25 14:14:54 -0700</bug_when>
    <thetext>Adam, Eric, who is going to work on this?</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>866649</commentid>
    <comment_count>2</comment_count>
    <who name="Adam Barth">abarth</who>
    <bug_when>2013-03-30 11:32:15 -0700</bug_when>
    <thetext>(In reply to comment #1)
&gt; Adam, Eric, who is going to work on this?

I don&apos;t plan to work on this issue this week.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>868952</commentid>
    <comment_count>3</comment_count>
    <who name="Alexey Proskuryakov">ap</who>
    <bug_when>2013-04-03 16:38:33 -0700</bug_when>
    <thetext>Do you plan to work on this after this week?</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>869038</commentid>
    <comment_count>4</comment_count>
    <who name="Maciej Stachowiak">mjs</who>
    <bug_when>2013-04-04 00:13:18 -0700</bug_when>
    <thetext>(In reply to comment #3)
&gt; Do you plan to work on this after this week?

I think it&apos;s going to our job to deal with it now, given the recent announcement. Let&apos;s let our former colleagues go in peace.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>869043</commentid>
    <comment_count>5</comment_count>
    <who name="Alexey Proskuryakov">ap</who>
    <bug_when>2013-04-04 00:36:26 -0700</bug_when>
    <thetext>I was thinking about this part of Eric&apos;s e-mail to webkit-dev: &quot;Adam and I are happy to work with other reviewers to remove PLATFORM(CHROMIUM) code and other messes we may have caused over the years from webkit.org&quot;

This is one of the most recent cases of &quot;mess&quot;.</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>869173</commentid>
    <comment_count>6</comment_count>
    <who name="Adam Barth">abarth</who>
    <bug_when>2013-04-04 08:50:09 -0700</bug_when>
    <thetext>I&apos;m happy to roll out the patches that led to the changes to ValueCheck if that would be helpful to you.  Completing this work requires landing the patch that makes HTMLNames thread safe.  That patch works for Chromium today, but making it work for other ports is probably out of scope for helping with cleanup.</thetext>
  </long_desc>
      
      

    </bug>

</bugzilla>