<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "https://bugs.webkit.org/page.cgi?id=bugzilla.dtd">

<bugzilla version="5.0.4.1"
          urlbase="https://bugs.webkit.org/"
          
          maintainer="admin@webkit.org"
>

    <bug>
          <bug_id>224383</bug_id>
          
          <creation_ts>2021-04-09 11:32:29 -0700</creation_ts>
          <short_desc>[iOS] Correct process-info rules to restrict to self</short_desc>
          <delta_ts>2021-04-09 18:55:35 -0700</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>WebKit</product>
          <component>WebKit Misc.</component>
          <version>WebKit Nightly Build</version>
          <rep_platform>Unspecified</rep_platform>
          <op_sys>Unspecified</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          
          <bug_file_loc></bug_file_loc>
          <status_whiteboard></status_whiteboard>
          <keywords>InRadar</keywords>
          <priority>P2</priority>
          <bug_severity>Normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          <everconfirmed>1</everconfirmed>
          <reporter name="Brent Fulgham">bfulgham</reporter>
          <assigned_to name="Brent Fulgham">bfulgham</assigned_to>
          <cc>achristensen</cc>
    
    <cc>bfulgham</cc>
    
    <cc>eric.carlson</cc>
    
    <cc>pvollan</cc>
          

      

      

      

          <comment_sort_order>oldest_to_newest</comment_sort_order>  
          <long_desc isprivate="0" >
    <commentid>1748800</commentid>
    <comment_count>0</comment_count>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2021-04-09 11:32:29 -0700</bug_when>
    <thetext>In Bug 168704 we restricted process-info to the WebContent process. However, our iOS sandbox did not perform a deny first, leaving access available.

This patch corrects this oversight.

&lt;rdar://problem/66582454&gt;</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1748809</commentid>
    <comment_count>1</comment_count>
      <attachid>425638</attachid>
    <who name="Brent Fulgham">bfulgham</who>
    <bug_when>2021-04-09 11:41:48 -0700</bug_when>
    <thetext>Created attachment 425638
Patch</thetext>
  </long_desc><long_desc isprivate="0" >
    <commentid>1748941</commentid>
    <comment_count>2</comment_count>
    <who name="EWS">ews-feeder</who>
    <bug_when>2021-04-09 18:55:33 -0700</bug_when>
    <thetext>Committed r275789 (236360@main): &lt;https://commits.webkit.org/236360@main&gt;

All reviewed patches have been landed. Closing bug and clearing flags on attachment 425638.</thetext>
  </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>425638</attachid>
            <date>2021-04-09 11:41:48 -0700</date>
            <delta_ts>2021-04-09 18:55:34 -0700</delta_ts>
            <desc>Patch</desc>
            <filename>bug-224383-20210409114147.patch</filename>
            <type>text/plain</type>
            <size>2030</size>
            <attacher name="Brent Fulgham">bfulgham</attacher>
            
              <data encoding="base64">U3VidmVyc2lvbiBSZXZpc2lvbjogMjc1NzY1CmRpZmYgLS1naXQgYS9Tb3VyY2UvV2ViS2l0L0No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</data>

          </attachment>
      

    </bug>

</bugzilla>