[webkit-gtk] Calling a native (compiled) subprogram from JavaScript in WebKitGTK

Michael Catanzaro mcatanzaro at igalia.com
Wed Sep 13 08:22:48 PDT 2017


On Wed, Sep 13, 2017 at 9:26 AM, Ludovic Brenta 
<ludovic at ludovic-brenta.org> wrote:
> Thanks a lot.  As you can imagine, multi-million-lines-of-code,
> mission-critical software implies quite a bit of overhead (think
> multiple sysadmin, DBA, development infrastructure, deployment, 
> testing,
> etc. departments).

Hmmm... you might want to consider building WebKit yourself instead of 
relying on Red Hat's package, if your mission-critical application 
processes untrusted input. Red Hat obviously does not provide security 
support for WebKit. I would review [1] and consider if that's a problem 
for your organization.

Michael

[1] https://webkitgtk.org/security.html



More information about the webkit-gtk mailing list