Skip to content

Conversation

@deepak1556
Copy link
Member

Subject: Handle PotentiallyDanglingMarkup() for CSSImageValue

The flag was lost in the KURL -> String -> KURL conversions. Store the
flag on CSSImageValue and always re-resolve from the original relative
url before fetching when that flag is set. The blocking happens in
BaseFetchContext::CanRequestInternal().

Bug: 1039885
Change-Id: Ia5777739a0ee0bee591163873926d19e0ea014bf
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/3226142
Reviewed-by: Anders Hartvoll Ruud andruud@chromium.org
Reviewed-by: Mike West mkwst@chromium.org
Commit-Queue: Rune Lillesveen futhark@chromium.org
Cr-Commit-Position: refs/heads/main@{#932004}

Notes: Security: backported fix for chromium:1039885

@deepak1556 deepak1556 requested a review from a team as a code owner February 8, 2022 09:30
@electron-cation electron-cation bot added the new-pr 🌱 PR opened recently label Feb 8, 2022
@deepak1556 deepak1556 added 15-x-y backport-check-skip Skip trop's backport validity checking security 🔒 semver/patch backwards-compatible bug fixes labels Feb 8, 2022
@electron-cation electron-cation bot removed the new-pr 🌱 PR opened recently label Feb 8, 2022
@zcbenz zcbenz merged commit e0a7f86 into 15-x-y Feb 10, 2022
@zcbenz zcbenz deleted the robo/cherry_pick_3226142_15_x_y branch February 10, 2022 00:37
@release-clerk
Copy link

release-clerk bot commented Feb 10, 2022

Release Notes Persisted

Security: backported fix for chromium:1039885

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

15-x-y backport-check-skip Skip trop's backport validity checking security 🔒 semver/patch backwards-compatible bug fixes

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants