Summary: | SerializedScriptValue::decode should check bufferIsLargeEnoughToContain before allocating a buffer | ||||||||
---|---|---|---|---|---|---|---|---|---|
Product: | WebKit | Reporter: | Fujii Hironori <Hironori.Fujii> | ||||||
Component: | Bindings | Assignee: | Fujii Hironori <Hironori.Fujii> | ||||||
Status: | RESOLVED FIXED | ||||||||
Severity: | Normal | CC: | alecflett, beidson, cdumez, darin, ews-watchlist, jsbell, webkit-bug-importer | ||||||
Priority: | P2 | Keywords: | InRadar | ||||||
Version: | WebKit Nightly Build | ||||||||
Hardware: | Unspecified | ||||||||
OS: | Unspecified | ||||||||
Bug Depends on: | |||||||||
Bug Blocks: | 209131 | ||||||||
Attachments: |
|
Description
Fujii Hironori
2020-03-16 00:45:35 PDT
Created attachment 393634 [details]
Patch
Created attachment 393714 [details]
Patch
Comment on attachment 393714 [details] Patch View in context: https://bugs.webkit.org/attachment.cgi?id=393714&action=review > Source/WebCore/ChangeLog:8 > + I have no new tests. The idea here is to state *why* there are no tests. Otherwise please just leave this line out. Committed r258614: <https://trac.webkit.org/changeset/258614> |