Skip to content
Permalink
Browse files
Bug 22343: Make 'Save Page As' obey first-party isolation
  • Loading branch information
arthuredelstein committed Jun 2, 2017
1 parent 0dad55e commit bf3da0dd1bfd2f368831d35adfb88fb6bc67465d
@@ -985,6 +985,18 @@ nsWebBrowser::SetProgressListener(nsIWebProgressListener* aProgressListener)
return NS_OK;
}

NS_IMETHODIMP
nsWebBrowser::GetLoadingPrincipal(nsIPrincipal** loadingPrincipal)
{
return NS_ERROR_NOT_IMPLEMENTED;
}

NS_IMETHODIMP
nsWebBrowser::SetLoadingPrincipal(nsIPrincipal* loadingPrincipal)
{
return NS_ERROR_NOT_IMPLEMENTED;
}

NS_IMETHODIMP
nsWebBrowser::SaveURI(nsIURI* aURI,
nsISupports* aCacheKey,
@@ -13,6 +13,7 @@ interface nsIWebProgressListener;
interface nsIFile;
interface nsIChannel;
interface nsILoadContext;
interface nsIPrincipal;

/**
* Interface for persisting DOM documents and URIs to local or remote storage.
@@ -111,6 +112,8 @@ interface nsIWebBrowserPersist : nsICancelable
*/
attribute nsIWebProgressListener progressListener;

attribute nsIPrincipal loadingPrincipal;

/**
* Save the specified URI to file.
*
@@ -274,6 +274,7 @@ const char *kWebBrowserPersistStringBundle =
nsWebBrowserPersist::nsWebBrowserPersist() :
mCurrentDataPathIsRelative(false),
mCurrentThingsToPersist(0),
mLoadingPrincipal(nsContentUtils::GetSystemPrincipal()),
mFirstAndOnlyUse(true),
mSavingDocument(false),
mCancel(false),
@@ -410,6 +411,18 @@ NS_IMETHODIMP nsWebBrowserPersist::SetProgressListener(
return NS_OK;
}

NS_IMETHODIMP nsWebBrowserPersist::GetLoadingPrincipal(nsIPrincipal** loadingPrincipal)
{
*loadingPrincipal = mLoadingPrincipal;
return NS_OK;
}

NS_IMETHODIMP nsWebBrowserPersist::SetLoadingPrincipal(nsIPrincipal* loadingPrincipal)
{
mLoadingPrincipal = loadingPrincipal;
return NS_OK;
}

NS_IMETHODIMP nsWebBrowserPersist::SaveURI(
nsIURI *aURI, nsISupports *aCacheKey,
nsIURI *aReferrer, uint32_t aReferrerPolicy,
@@ -1352,7 +1365,7 @@ nsresult nsWebBrowserPersist::SaveURIInternal(
nsCOMPtr<nsIChannel> inputChannel;
rv = NS_NewChannel(getter_AddRefs(inputChannel),
aURI,
nsContentUtils::GetSystemPrincipal(),
mLoadingPrincipal,
nsILoadInfo::SEC_ALLOW_CROSS_ORIGIN_DATA_IS_NULL,
nsIContentPolicy::TYPE_OTHER,
nullptr, // aLoadGroup
@@ -2696,7 +2709,7 @@ nsWebBrowserPersist::CreateChannelFromURI(nsIURI *aURI, nsIChannel **aChannel)

rv = NS_NewChannel(aChannel,
aURI,
nsContentUtils::GetSystemPrincipal(),
mLoadingPrincipal,
nsILoadInfo::SEC_ALLOW_CROSS_ORIGIN_DATA_IS_NULL,
nsIContentPolicy::TYPE_OTHER);
NS_ENSURE_SUCCESS(rv, rv);
@@ -146,6 +146,8 @@ class nsWebBrowserPersist final : public nsIInterfaceRequestor,
nsCOMPtr<nsIMIMEService> mMIMEService;
nsCOMPtr<nsIURI> mURI;
nsCOMPtr<nsIWebProgressListener> mProgressListener;
nsCOMPtr<nsIPrincipal> mLoadingPrincipal;

/**
* Progress listener for 64-bit values; this is the same object as
* mProgressListener, but is a member to avoid having to qi it for each
@@ -118,8 +118,6 @@ GetLoadContextInfo(nsIChannel * aChannel)
{
nsresult rv;

DebugOnly<bool> pb = NS_UsePrivateBrowsing(aChannel);

bool anon = false;
nsLoadFlags loadFlags;
rv = aChannel->GetLoadFlags(&loadFlags);
@@ -129,7 +127,21 @@ GetLoadContextInfo(nsIChannel * aChannel)

NeckoOriginAttributes oa;
NS_GetOriginAttributes(aChannel, oa);
MOZ_ASSERT(pb == (oa.mPrivateBrowsingId > 0));

#ifdef DEBUG
nsCOMPtr<nsILoadInfo> loadInfo = aChannel->GetLoadInfo();
if (loadInfo) {
nsCOMPtr<nsIPrincipal> principal = loadInfo->LoadingPrincipal();
if (principal) {
bool chrome;
principal->GetIsSystemPrincipal(&chrome);
if (!chrome) {
bool pb = NS_UsePrivateBrowsing(aChannel);
MOZ_ASSERT(pb == (oa.mPrivateBrowsingId > 0));
}
}
}
#endif

return new LoadContextInfo(anon, oa);
}
@@ -467,6 +467,8 @@ function internalSave(aURL, aDocument, aDefaultFileName, aContentDisposition,
: aInitiatingDocument.isPrivate;
}

let loadingPrincipal = aInitiatingDocument.nodePrincipal || aDocument.nodePrincipal;

var persistArgs = {
sourceURI : sourceURI,
sourceReferrer : aReferrer,
@@ -477,6 +479,7 @@ function internalSave(aURL, aDocument, aDefaultFileName, aContentDisposition,
sourcePostData : nonCPOWDocument ? getPostData(aDocument) : null,
bypassCache : aShouldBypassCache,
isPrivate : isPrivate,
loadingPrincipal : loadingPrincipal,
};

// Start the actual save process
@@ -518,6 +521,8 @@ function internalPersist(persistArgs)
{
var persist = makeWebBrowserPersist();

persist.loadingPrincipal = persistArgs.loadingPrincipal;

// Calculate persist flags.
const nsIWBP = Components.interfaces.nsIWebBrowserPersist;
const flags = nsIWBP.PERSIST_FLAGS_REPLACE_EXISTING_FILES |

0 comments on commit bf3da0d

Please sign in to comment.