Bug 276208 (CVE-2025-43480)
| Summary: | Mark cross-origin media requests as coming from an opaque source | ||
|---|---|---|---|
| Product: | WebKit | Reporter: | Matthew Finkel <m_finkel> |
| Component: | Page Loading | Assignee: | Matthew Finkel <m_finkel> |
| Status: | REOPENED | ||
| Severity: | Normal | CC: | beidson, commit-queue, mcatanzaro, webkit-bug-importer, yuki.sekiguchi |
| Priority: | P2 | Keywords: | InRadar |
| Version: | WebKit Nightly Build | ||
| Hardware: | Unspecified | ||
| OS: | Unspecified | ||
| Bug Depends on: | 277759 | ||
| Bug Blocks: | |||
Matthew Finkel
Mark cross-origin media requests as coming from an opaque source
| Attachments | ||
|---|---|---|
| Add attachment proposed patch, testcase, etc. |
Matthew Finkel
rdar://124946839
Matthew Finkel
Pull request: https://github.com/WebKit/WebKit/pull/30476
EWS
Committed 280985@main (0473037b5502): <https://commits.webkit.org/280985@main>
Reviewed commits have been landed. Closing PR #30476 and removing active labels.
EWS
Committed 280938.16@integration/ci/124946839_0473037b55_safari-7619-branch (ff3ade567bdb): <https://commits.webkit.org/280938.16@integration/ci/124946839_0473037b55_safari-7619-branch>
Reviewed commits have been landed. Closing PR #1376 and removing active labels.
WebKit Commit Bot
Re-opened since this is blocked by bug 277759
Yuki Sekiguchi
What is the current status of this bug?
bug 277759 reverted the associated commit on the main branch, so it appears there is currently no fix in place.
Matthew Finkel
Yes, apologies for the missed update. This will be fixed in https://github.com/WebKit/WebKit/pull/53958.
rdar://133406290