[Webkit-unassigned] [Bug 39323] Repro crash with many Google image search results

bugzilla-daemon at webkit.org bugzilla-daemon at webkit.org
Tue May 18 16:36:38 PDT 2010


https://bugs.webkit.org/show_bug.cgi?id=39323


Brady Eidson <beidson at apple.com> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
  Attachment #56422|                            |review?, commit-queue-
               Flag|                            |




--- Comment #3 from Brady Eidson <beidson at apple.com>  2010-05-18 16:36:38 PST ---
Created an attachment (id=56422)
 --> (https://bugs.webkit.org/attachment.cgi?id=56422)
Proposed fix + test

Replace any PluginDocuments that violate sandboxing with a new document/tokenizer that acts as a data sink, just ignoring the resource data.

This prevents the crash and prevents the plugin binaries from loading.

-- 
Configure bugmail: https://bugs.webkit.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.



More information about the webkit-unassigned mailing list