Chromium Code Reviews
chromiumcodereview-hr@appspot.gserviceaccount.com (chromiumcodereview-hr) | Please choose your nickname with Settings | Help | Chromium Project | Gerrit Changes | Sign out
(555)

Issue 2615803002: Disallow SharedArrayBuffer in postMessage transfer list (Closed)

Created:
3 years, 11 months ago by binji
Modified:
3 years, 11 months ago
Reviewers:
haraken, jbroman
CC:
blink-reviews, blink-reviews-bindings_chromium.org, chromium-reviews, jbroman+watch_chromium.org
Target Ref:
refs/pending/heads/master
Project:
chromium
Visibility:
Public.

Description

Disallow SharedArrayBuffer in postMessage transfer list This is the Blink-side change to match the V8 change here: https://codereview.chromium.org/2570433005. BUG=676063 Review-Url: https://codereview.chromium.org/2615803002 Cr-Commit-Position: refs/heads/master@{#442111} Committed: https://chromium.googlesource.com/chromium/src/+/8b61d57ecb303d484ec2024bee09120c2af4bcf7

Patch Set 1 #

Total comments: 7

Patch Set 2 : comments #

Total comments: 2

Patch Set 3 : add test, fix indexing #

Total comments: 6

Patch Set 4 : fixes #

Total comments: 2

Patch Set 5 : remove exceptionState #

Messages

Total messages: 30 (18 generated)
binji
3 years, 11 months ago (2017-01-05 01:51:44 UTC) #2
haraken
https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode48 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:48: if (!prepareTransfer(transferables, exceptionState)) Instead of using a return value, ...
3 years, 11 months ago (2017-01-05 02:02:06 UTC) #5
binji
https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode48 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:48: if (!prepareTransfer(transferables, exceptionState)) On 2017/01/05 02:02:06, haraken wrote: > ...
3 years, 11 months ago (2017-01-05 21:28:19 UTC) #8
haraken
LGTM https://codereview.chromium.org/2615803002/diff/20001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/20001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode402 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:402: index += m_transferables->arrayBuffers.size(); Why do you need to ...
3 years, 11 months ago (2017-01-06 00:12:53 UTC) #9
binji
https://codereview.chromium.org/2615803002/diff/20001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/20001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode402 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:402: index += m_transferables->arrayBuffers.size(); On 2017/01/06 00:12:53, haraken wrote: > ...
3 years, 11 months ago (2017-01-06 02:14:53 UTC) #10
haraken
LGTM
3 years, 11 months ago (2017-01-06 02:18:03 UTC) #13
jbroman
https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/1/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode393 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:393: if (!V8DOMWrapper::isWrapper(isolate, v8SharedArrayBuffer)) { On 2017/01/05 at 02:02:06, haraken ...
3 years, 11 months ago (2017-01-06 16:22:02 UTC) #17
binji
https://codereview.chromium.org/2615803002/diff/40001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/40001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode92 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:92: } On 2017/01/06 16:22:02, jbroman wrote: > I think ...
3 years, 11 months ago (2017-01-06 19:06:21 UTC) #18
jbroman
lgtm with one remaining comment https://codereview.chromium.org/2615803002/diff/60001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/60001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode387 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:387: if (!sharedArrayBuffer) { I ...
3 years, 11 months ago (2017-01-06 20:00:34 UTC) #21
binji
https://codereview.chromium.org/2615803002/diff/60001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp File third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp (right): https://codereview.chromium.org/2615803002/diff/60001/third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp#newcode387 third_party/WebKit/Source/bindings/core/v8/serialization/V8ScriptValueSerializer.cpp:387: if (!sharedArrayBuffer) { On 2017/01/06 20:00:34, jbroman wrote: > ...
3 years, 11 months ago (2017-01-06 22:48:26 UTC) #24
commit-bot: I haz the power
CQ is trying da patch. Follow status at https://chromium-cq-status.appspot.com/v2/patch-status/codereview.chromium.org/2615803002/80001
3 years, 11 months ago (2017-01-06 22:49:29 UTC) #27
commit-bot: I haz the power
3 years, 11 months ago (2017-01-07 00:36:13 UTC) #30
Message was sent while issue was closed.
Committed patchset #5 (id:80001) as
https://chromium.googlesource.com/chromium/src/+/8b61d57ecb303d484ec2024bee09...

Powered by Google App Engine
This is Rietveld 408576698