Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: cherry-pick 3c80bb2a594f from chromium #28689

Merged
merged 2 commits into from
Apr 19, 2021

Conversation

ppontes
Copy link
Member

@ppontes ppontes commented Apr 16, 2021

Forbid script execution while updating the paint lifecycle.

(cherry picked from commit 5425d3b100fab533ea9ddc2ed8fbfc4870db0587)

Bug: 1196781
Change-Id: Idc8d24792d5c413691977b09ca821de4e13887ad
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/2812000
Commit-Queue: Adrian Taylor adetaylor@chromium.org
Commit-Queue: Robert Flack flackr@chromium.org
Reviewed-by: Xianzhu Wang wangxianzhu@chromium.org
Cr-Original-Commit-Position: refs/heads/master@{#870275}
Reviewed-on: https://chromium-review.googlesource.com/c/chromium/src/+/2821879
Reviewed-by: Robert Flack flackr@chromium.org
Reviewed-by: Achuith Bhandarkar achuith@chromium.org
Reviewed-by: Victor-Gabriel Savu vsavu@google.com
Commit-Queue: Jana Grill janagrill@chromium.org
Cr-Commit-Position: refs/branch-heads/4240@{#1601}
Cr-Branched-From: f297677702651916bbf65e59c0d4bbd4ce57d1ee-refs/heads/master@{#800218}

Notes: Security: backported fix for CVE-2021-21206.

@ppontes ppontes requested a review from a team as a code owner April 16, 2021 10:57
@ppontes ppontes added 11-x-y backport-check-skip Skip trop's backport validity checking semver/patch backwards-compatible bug fixes labels Apr 16, 2021
@electron-cation electron-cation bot added new-pr 🌱 PR opened in the last 24 hours and removed new-pr 🌱 PR opened in the last 24 hours labels Apr 16, 2021
@jkleinsc jkleinsc merged commit fb0b474 into 11-x-y Apr 19, 2021
@release-clerk
Copy link

release-clerk bot commented Apr 19, 2021

Release Notes Persisted

Security: backported fix for CVE-2021-21206.

@jkleinsc jkleinsc deleted the cherry-pick/11-x-y/chromium/3c80bb2a594f branch April 19, 2021 13:52
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
11-x-y backport-check-skip Skip trop's backport validity checking semver/patch backwards-compatible bug fixes
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants