Bug 240008

Summary: [iOS][GPUP] Remove Mach sandbox extensions for non browser clients
Product: WebKit Reporter: Per Arne Vollan <pvollan>
Component: WebKit Misc.Assignee: Per Arne Vollan <pvollan>
Status: RESOLVED FIXED    
Severity: Normal CC: bfulgham, cdumez, gavin.p, ggaren, mazander, sihui_liu, webkit-bug-importer
Priority: P2 Keywords: InRadar
Version: WebKit Nightly Build   
Hardware: Unspecified   
OS: Unspecified   
Attachments:
Description Flags
Patch none

Description Per Arne Vollan 2022-05-03 07:23:33 PDT
Remove Mach sandbox extensions for clients that are not browsers in the GPU process on iOS. The same set of extensions has recently been removed from the WebContent process. We also block these in the GPU process' sandbox, so there should be no change in behavior.
Comment 1 Per Arne Vollan 2022-05-03 07:31:41 PDT
Created attachment 458741 [details]
Patch
Comment 2 Geoffrey Garen 2022-05-03 09:26:53 PDT
Comment on attachment 458741 [details]
Patch

r=me
Comment 3 Per Arne Vollan 2022-05-03 10:47:32 PDT
Comment on attachment 458741 [details]
Patch

Thanks for reviewing!
Comment 4 EWS 2022-05-03 11:26:56 PDT
Committed r293733 (250221@main): <https://commits.webkit.org/250221@main>

All reviewed patches have been landed. Closing bug and clearing flags on attachment 458741 [details].
Comment 5 Radar WebKit Bug Importer 2022-05-03 11:27:13 PDT
<rdar://problem/92682154>