Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick 9b5207569882 from chromium #35543

Merged
merged 2 commits into from Sep 6, 2022

Conversation

MarshallOfSound
Copy link
Member

@MarshallOfSound MarshallOfSound commented Sep 1, 2022

Mojo: Validate response message type

Ensures that a response message is actually the type expected by the
original request.

Fixed: 1358134
Change-Id: I8f8f58168764477fbf7a6d2e8aeb040f07793d45
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/3864274
Reviewed-by: Robert Sesek rsesek@chromium.org
Commit-Queue: Ken Rockot rockot@google.com
Cr-Commit-Position: refs/heads/main@{#1041553}

Notes: Security: backported fix for CVE-2022-3075.

@MarshallOfSound MarshallOfSound requested review from a team as code owners September 1, 2022 19:35
@MarshallOfSound MarshallOfSound added 21-x-y backport-check-skip Skip trop's backport validity checking security 🔒 semver/patch backwards-compatible bug fixes labels Sep 1, 2022
@electron-cation electron-cation bot added new-pr 🌱 PR opened in the last 24 hours and removed new-pr 🌱 PR opened in the last 24 hours labels Sep 1, 2022
@nornagon nornagon merged commit e48878e into 21-x-y Sep 6, 2022
@nornagon nornagon deleted the cherry-pick/21-x-y/chromium/9b5207569882 branch September 6, 2022 17:27
@release-clerk
Copy link

release-clerk bot commented Sep 6, 2022

Release Notes Persisted

Security: backported fix for CVE-2022-3075.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
21-x-y backport-check-skip Skip trop's backport validity checking security 🔒 semver/patch backwards-compatible bug fixes
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants