Bug 240008

Summary: [iOS][GPUP] Remove Mach sandbox extensions for non browser clients
Product: WebKit Reporter: Per Arne Vollan <pvollan>
Component: WebKit Misc.Assignee: Per Arne Vollan <pvollan>
Severity: Normal CC: bfulgham, cdumez, gavin.p, ggaren, mazander, sihui_liu, webkit-bug-importer
Priority: P2 Keywords: InRadar
Version: WebKit Nightly Build   
Hardware: Unspecified   
OS: Unspecified   
Description Flags
Patch none

Description Per Arne Vollan 2022-05-03 07:23:33 PDT
Remove Mach sandbox extensions for clients that are not browsers in the GPU process on iOS. The same set of extensions has recently been removed from the WebContent process. We also block these in the GPU process' sandbox, so there should be no change in behavior.
Comment 1 Per Arne Vollan 2022-05-03 07:31:41 PDT
Created attachment 458741 [details]
Comment 2 Geoffrey Garen 2022-05-03 09:26:53 PDT
Comment on attachment 458741 [details]

Comment 3 Per Arne Vollan 2022-05-03 10:47:32 PDT
Comment on attachment 458741 [details]

Thanks for reviewing!
Comment 4 EWS 2022-05-03 11:26:56 PDT
Committed r293733 (250221@main): <https://commits.webkit.org/250221@main>

All reviewed patches have been landed. Closing bug and clearing flags on attachment 458741 [details].
Comment 5 Radar WebKit Bug Importer 2022-05-03 11:27:13 PDT