| Index: content/browser/fileapi/fileapi_message_filter.cc
|
| diff --git a/content/browser/fileapi/fileapi_message_filter.cc b/content/browser/fileapi/fileapi_message_filter.cc
|
| index deaf3148c0eb36f3ee8d3be26708c70bba30f73a..70ffc75bc58a42497066b1bcb0347c912ce82ba0 100644
|
| --- a/content/browser/fileapi/fileapi_message_filter.cc
|
| +++ b/content/browser/fileapi/fileapi_message_filter.cc
|
| @@ -520,6 +520,8 @@ void FileAPIMessageFilter::OnStartBuildingBlob(const GURL& url) {
|
| void FileAPIMessageFilter::OnAppendBlobDataItem(
|
| const GURL& url, const BlobData::Item& item) {
|
| DCHECK(BrowserThread::CurrentlyOn(BrowserThread::IO));
|
| + // TODO(kinuko): We must check permission in TYPE_FILE_FILESYSTEM cases too.
|
| + // http://crbug.com/141827
|
| if (item.type() == BlobData::Item::TYPE_FILE &&
|
| !ChildProcessSecurityPolicyImpl::GetInstance()->CanReadFile(
|
| process_id_, item.path())) {
|
|
|