Summary: | [Mac] Web Content service with a restricted entitlement may load arbitrary dylibs | ||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|
Product: | WebKit | Reporter: | mitz | ||||||||
Component: | WebKit2 | Assignee: | mitz | ||||||||
Status: | RESOLVED FIXED | ||||||||||
Severity: | Normal | CC: | sam, thorton | ||||||||
Priority: | P2 | Keywords: | InRadar | ||||||||
Version: | Other | ||||||||||
Hardware: | Unspecified | ||||||||||
OS: | Unspecified | ||||||||||
Bug Depends on: | |||||||||||
Bug Blocks: | 173424 | ||||||||||
Attachments: |
|
Description
mitz
2016-04-16 14:30:39 PDT
Created attachment 276563 [details]
Enable library validation when needed
Fixed in <http://trac.webkit.org/r199628>. This was reverted in <http://trac.webkit.org/r200172>. Using <rdar://problem/26714558> to reenable in macOS Sierra and later. Created attachment 281230 [details]
Enable library validation when needed
Committed <http://trac.webkit.org/r202024>. Can do this for El Capitan as well now. Created attachment 286544 [details]
Enable library validation for El Capitan too
Committed <https://trac.webkit.org/r204682>. |