Open Bug 1505832 (fission-site-sandbox) Opened 6 years ago Updated 2 years ago

[meta] Fission Site Sandboxing

Categories

(Core :: Security: Process Sandboxing, task)

task

Tracking

()

Fission Milestone Future

People

(Reporter: tjr, Unassigned)

References

(Depends on 8 open bugs, Blocks 1 open bug)

Details

(Keywords: meta, parity-chrome)

This bug is a meta for ensuring that a compromise of evil.com's process cannot allow them to learn data about any other origin or perform actions they are not entitled to do.

It encompasses the very large fission-ipc component, but there are additional bugs that block this that are not strictly about origin checks in IPC methods.
Alias: fission-origin-sandbox
Depends on: fission-ipc
Depends on: 1156835
Depends on: 1506198
Depends on: orb

Fission Future because Nika says this doesn't block shipping Fission MVP.

Fission Milestone: --- → Future
Type: enhancement → task
Alias: fission-origin-sandbox → fission-site-sandbox
Summary: [meta] Fission Origin Sandboxing → [meta] Fission Site Sandboxing
Depends on: 777980
Keywords: parity-chrome
Depends on: 1735618
Depends on: 827853
Severity: normal → S3
You need to log in before you can comment on or make changes to this bug.